Organizr
Organizr: vulnerabilidades y CVE
Organizr tiene 10 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 5 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE10
Últimos 12 meses0
Críticas5
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-41372 | Crítica (9.8) | 0.52% | — | 29 ago 2024 | Organizr v1.90 was discovered to contain a SQL injection vulnerability via chat/settyping.php. |
| CVE-2024-41371 | Media (6.1) | 0.29% | — | 29 ago 2024 | Organizr v1.90 is vulnerable to Cross Site Scripting (XSS) via api.php. |
| CVE-2024-41370 | Crítica (9.8) | 0.52% | — | 29 ago 2024 | Organizr v1.90 was discovered to contain a SQL injection vulnerability via chat/setlike.php. |
| CVE-2022-1909 | Media (5.4) | 0.69% | — | 27 may 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository causefx/organizr prior to 2.1.2200. |
| CVE-2022-1699 | Alta (7.5) | 1.1% | — | 12 may 2022 | Uncontrolled Resource Consumption in GitHub repository causefx/organizr prior to 2.1.2000. This vulnerability can be abused by doing a DDoS attack for which genuine users will not able to access resources/applications. |
| CVE-2022-1698 | Alta (7.5) | 1.1% | — | 12 may 2022 | Allowing long password leads to denial of service in GitHub repository causefx/organizr prior to 2.1.2000. This vulnerability can be abused by doing a DDoS attack for which genuine users will not able to access… |
| CVE-2022-1347 | Alta (8.4) | 1.2% | — | 13 abr 2022 | Stored XSS in the "Username" & "Email" input fields leads to account takeover of Admin & Co-admin users in GitHub repository causefx/organizr prior to 2.1.1810. Account takeover and privilege escalation |
| CVE-2022-1345 | Crítica (9) | 1.00% | — | 13 abr 2022 | Stored XSS viva .svg file upload in GitHub repository causefx/organizr prior to 2.1.1810. This allows attackers to execute malicious scripts in the user's browser and it can lead to session hijacking, sensitive data… |
| CVE-2022-1346 | Crítica (9) | 1.0% | — | 13 abr 2022 | Multiple Stored XSS in GitHub repository causefx/organizr prior to 2.1.1810. This allows attackers to execute malicious scripts in the user's browser and it can lead to session hijacking, sensitive data exposure, and… |
| CVE-2022-1344 | Crítica (9) | 1.0% | — | 13 abr 2022 | Stored XSS due to no sanitization in the filename in GitHub repository causefx/organizr prior to 2.1.1810. This allows attackers to execute malicious scripts in the user's browser and it can lead to session hijacking,… |