Etherpad
Etherpad Lite: vulnerabilities and CVEs
Etherpad Lite has 2 published vulnerabilities, 0 of them in the last 12 months. 1 are rated critical and 0 are listed by CISA as actively exploited.
CVEs2
Last 12 months0
Critical1
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-9845 | Critical (9.8) | 13% | — | Apr 29, 2018 | Etherpad Lite before 1.6.4 is exploitable for admin access. |
| CVE-2018-6834 | Medium (6.1) | 0.88% | — | Feb 8, 2018 | static/js/pad_utils.js in Etherpad Lite before v1.6.3 has XSS via window.location.href. |