Skip to content
Noroxi

dootask records

4 published records for vendor dootask.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 24
  2. 25
  3. 26

Bar: total · dark part: CISA KEV.

All records

4 records
  • An authenticated arbitrary file upload vulnerability in the component /msg/sendfiles of DooTask v1.0.51 allows attackers to execute arbitrar

    HighCVSS 8.8No exploitEPSS 1%

    dootask · dootaskAug 22, 2025

  • DooTask v1.6.27 has a Cross-Site Scripting (XSS) vulnerability in the /manage/project/<id> page via the input field projectDesc.

    MediumCVSS 6.1No exploitEPSS 0%

    dootask · dootaskMar 20, 2026

  • An arbitrary file upload vulnerability in dootask v0.30.13 allows attackers to execute arbitrary code via uploading a crafted PDF file.

    MediumCVSS 5.4No exploitEPSS 0%

    dootask · dootaskMay 15, 2024

  • DooTask v1.0.51 was dicovered to contain an authenticated arbitrary download vulnerability via the component /msg/sendtext.

    LowCVSS 3.5No exploitEPSS 0%

    dootask · dootaskAug 22, 2025