Vulnerabilities (CVE)

Filtered by vendor Inventree Project Subscribe
Total 5 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-3355 1 Inventree Project 1 Inventree 2024-11-21 N/A 5.4 MEDIUM
Cross-site Scripting (XSS) - Stored in GitHub repository inventree/inventree prior to 0.8.3.
CVE-2022-2134 1 Inventree Project 1 Inventree 2024-11-21 4.3 MEDIUM 6.5 MEDIUM
Allocation of Resources Without Limits or Throttling in GitHub repository inventree/inventree prior to 0.8.0.
CVE-2022-2113 1 Inventree Project 1 Inventree 2024-11-21 3.5 LOW 5.4 MEDIUM
Cross-site Scripting (XSS) - Stored in GitHub repository inventree/inventree prior to 0.7.2.
CVE-2022-2112 1 Inventree Project 1 Inventree 2024-11-21 6.8 MEDIUM 8.8 HIGH
Improper Neutralization of Formula Elements in a CSV File in GitHub repository inventree/inventree prior to 0.7.2.
CVE-2022-2111 1 Inventree Project 1 Inventree 2024-11-21 6.5 MEDIUM 8.8 HIGH
Unrestricted Upload of File with Dangerous Type in GitHub repository inventree/inventree prior to 0.7.2.