Gravitee
Gravitee API Management: vulnerabilities and CVEs
Gravitee API Management has 2 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.
CVEs2
Last 12 months0
Critical0
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-38723 | High (8.6) | 0.76% | — | Jan 3, 2023 | Gravitee API Management before 3.15.13 allows path traversal through HTML injection. |
| CVE-2019-25075 | Medium (6.1) | 0.71% | — | Aug 23, 2022 | HTML injection combined with path traversal in the Email service in Gravitee API Management before 1.25.3 allows anonymous users to read arbitrary files via a /management/users/register request. |