Francoisjacquet Rosariosis vulnerabilities
8 known vulnerabilities affecting francoisjacquet/francoisjacquet_rosariosis.
Total CVEs
8
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH2MEDIUM4
Vulnerabilities
Page 1 of 1
CVE-2023-2665HIGHCVSS 7.5≥ unspecified, < 11.02023-05-12
CVE-2023-2665 [HIGH] CWE-921 CVE-2023-2665: Storage of Sensitive Data in a Mechanism without Access Control in GitHub repository francoisjacquet
Storage of Sensitive Data in a Mechanism without Access Control in GitHub repository francoisjacquet/rosariosis prior to 11.0.
nvd
CVE-2023-2202MEDIUMCVSS 6.5≥ unspecified, < 10.9.32023-04-21
CVE-2023-2202 [MEDIUM] CWE-284 CVE-2023-2202: Improper Access Control in GitHub repository francoisjacquet/rosariosis prior to 10.9.3.
Improper Access Control in GitHub repository francoisjacquet/rosariosis prior to 10.9.3.
nvd
CVE-2023-0994HIGHCVSS 7.5≥ unspecified, < 10.8.22023-02-24
CVE-2023-0994 [HIGH] CWE-200 CVE-2023-0994: Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository francoisjacquet/rosa
Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository francoisjacquet/rosariosis prior to 10.8.2.
nvd
CVE-2022-2714CRITICALCVSS 9.8≥ unspecified, < 10.02022-09-06
CVE-2022-2714 [CRITICAL] CWE-130 CVE-2022-2714: Improper Handling of Length Parameter Inconsistency in GitHub repository francoisjacquet/rosariosis
Improper Handling of Length Parameter Inconsistency in GitHub repository francoisjacquet/rosariosis prior to 10.0.
nvd
CVE-2022-3072MEDIUMCVSS 5.4≥ unspecified, < 8.9.32022-09-01
CVE-2022-3072 [MEDIUM] CWE-79 CVE-2022-3072: Cross-site Scripting (XSS) - Stored in GitHub repository francoisjacquet/rosariosis prior to 8.9.3.
Cross-site Scripting (XSS) - Stored in GitHub repository francoisjacquet/rosariosis prior to 8.9.3.
nvd
CVE-2022-2067CRITICALCVSS 9.1≥ unspecified, < 9.02022-06-13
CVE-2022-2067 [CRITICAL] CWE-89 CVE-2022-2067: SQL Injection in GitHub repository francoisjacquet/rosariosis prior to 9.0.
SQL Injection in GitHub repository francoisjacquet/rosariosis prior to 9.0.
nvd
CVE-2022-2036MEDIUMCVSS 5.4≥ unspecified, < 9.0.12022-06-09
CVE-2022-2036 [MEDIUM] CWE-79 CVE-2022-2036: Cross-site Scripting (XSS) - Stored in GitHub repository francoisjacquet/rosariosis prior to 9.0.1.
Cross-site Scripting (XSS) - Stored in GitHub repository francoisjacquet/rosariosis prior to 9.0.1.
nvd
CVE-2022-1997MEDIUMCVSS 5.4≥ unspecified, < 9.02022-06-08
CVE-2022-1997 [MEDIUM] CWE-79 CVE-2022-1997: Cross-site Scripting (XSS) - Stored in GitHub repository francoisjacquet/rosariosis prior to 9.0.
Cross-site Scripting (XSS) - Stored in GitHub repository francoisjacquet/rosariosis prior to 9.0.
nvd