İçeriğe atla
Noroxi

thymeleaf kayıtları

thymeleaf üreticisine ait 4 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%100
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

4 kayıt
  • CVE-2021-43466
    40Planlayın

    In the thymeleaf-spring5:3.0.12 component, thymeleaf combined with specific scenarios in template injection may lead to remote code executio

    KritikCVSS 9,8İstismar yokEPSS %4

    thymeleaf · thymeleaf9 Kas 2021

  • CVE-2026-40478
    36İzleyin

    Improper neutralization of specific syntax patterns for unauthorized expressions in Thymeleaf

    KritikCVSS 9,0İstismar yokEPSS %1

    thymeleaf · thymeleaf17 Nis 2026

  • CVE-2026-40477
    36İzleyin

    Improper restriction of the scope of accessible objects in Thymeleaf expressions

    KritikCVSS 9,0Kavram kanıtıEPSS %1

    thymeleaf · thymeleaf17 Nis 2026

  • CVE-2023-38286
    30İzleyin

    Thymeleaf through 3.1.1.RELEASE, as used in spring-boot-admin (aka Spring Boot Admin) through 3.1.1 and other products, allows sandbox bypas

    YüksekCVSS 7,5İstismar yokEPSS %1

    thymeleaf · thymeleaf14 Tem 2023