Passbolt kayıtları
passbolt üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %75
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-348 Use of Less Trusted Source1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
27İzleyin | CVE-2024-33669İstismar yok | An issue was discovered in Passbolt Browser Extension before 4.6.2.passbolt · passbolt browser extension · CWE-200 | Orta6,8 | — | %0,6 | 25 Nis 2024 |
21İzleyin | CVE-2017-1000442İstismar yok | Passbolt API version 1.6.4 and older are vulnerable to a XSS in the url field on the password workspacepassbolt · passbolt api · CWE-79 | Orta5,4 | — | %0,5 | 2 Oca 2018 |
17İzleyin | CVE-2024-33670İstismar yok | Passbolt API before 4.6.2 allows HTML injection in a URL parameter, resulting in custom content being displayed when a user visits the craftpassbolt · passbolt api · CWE-79 | Orta4,3 | — | %0,5 | 25 Nis 2024 |
8İzleyin | CVE-2025-27913İstismar yok | Passbolt API before 5, if the server is misconfigured (with an incorrect installation process and disregarding of Health Check results), canpassbolt · passbolt api · CWE-348 | Düşük2,1 | — | %0,2 | 10 Mar 2025 |
- CVE-2024-3366927İzleyin
An issue was discovered in Passbolt Browser Extension before 4.6.2.
OrtaCVSS 6,8İstismar yokEPSS %1passbolt · passbolt browser extension25 Nis 2024
- CVE-2017-100044221İzleyin
Passbolt API version 1.6.4 and older are vulnerable to a XSS in the url field on the password workspace
OrtaCVSS 5,4İstismar yokEPSS %1passbolt · passbolt api2 Oca 2018
- CVE-2024-3367017İzleyin
Passbolt API before 4.6.2 allows HTML injection in a URL parameter, resulting in custom content being displayed when a user visits the craft
OrtaCVSS 4,3İstismar yokEPSS %0passbolt · passbolt api25 Nis 2024
- CVE-2025-279138İzleyin
Passbolt API before 5, if the server is misconfigured (with an incorrect installation process and disregarding of Health Check results), can
DüşükCVSS 2,1İstismar yokEPSS %0passbolt · passbolt api10 Mar 2025