Skip to content
Noroxi

beaker-project records

3 published records for vendor beaker-project.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 17

Bar: total · dark part: CISA KEV.

Attack profile

All records

3 records
  • CVE-2015-3162
    21Monitor

    Cross-site scripting (XSS) vulnerability in the edit comment dialog in bkr/server/widgets.py in Beaker 20.1 allows remote authenticated user

    MediumCVSS 5.4No exploitEPSS 1%

    beaker-project · beakerSep 6, 2017

  • CVE-2015-3161
    19Monitor

    The search bar code in bkr/server/widgets.py in Beaker before 20.1 does not escape </script> tags in string literals when producing JSON.

    MediumCVSS 4.8No exploitEPSS 1%

    beaker-project · beakerSep 6, 2017

  • CVE-2015-3160
    17Monitor

    XML external entity (XXE) vulnerability in bkr/server/jobs.py in Beaker before 20.1 allows remote authenticated users to obtain sensitive in

    MediumCVSS 4.3No exploitEPSS 1%

    beaker-project · beakerSep 6, 2017