Lm21
Lm21 Twonav: vulnerabilities and CVEs
Lm21 Twonav has 4 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.
CVEs4
Last 12 months0
Critical0
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-29450 | Medium (6.5) | 0.38% | — | Apr 17, 2025 | An issue in twonav v.2.1.18-20241105 allows a remote attacker to obtain sensitive information via the site settings component. |
| CVE-2025-29449 | Medium (6.5) | 0.38% | — | Apr 17, 2025 | An issue in twonav v.2.1.18-20241105 allows a remote attacker to obtain sensitive information via the link identification function. |
| CVE-2024-34453 | Medium (4.3) | 0.35% | — | May 3, 2024 | TwoNav 2.1.13 contains an SSRF vulnerability via the url paramater to index.php?c=api&method=read_data&type=connectivity_test (which reaches /system/api.php). |
| CVE-2023-37657 | Medium (5.4) | 0.38% | — | Jul 11, 2023 | TwoNav v2.0.28-20230624 is vulnerable to Cross Site Scripting (XSS). |