« Back to list

Gravitee

Gravitee API Management: vulnerabilities and CVEs

Gravitee API Management has 2 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.

CVEs2
Last 12 months0
Critical0
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2022-38723High (8.6)0.76%—Jan 3, 2023
Gravitee API Management before 3.15.13 allows path traversal through HTML injection.
CVE-2019-25075Medium (6.1)0.71%—Aug 23, 2022
HTML injection combined with path traversal in the Email service in Gravitee API Management before 1.25.3 allows anonymous users to read arbitrary files via a /management/users/register request.