linkstack records
3 published records for vendor linkstack.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-613 Insufficient Session Expiration1
- CWE-640 Weak Password Recovery Mechanism for Forgotten Password1
- CWE-918 Server-Side Request Forgery (SSRF)1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2023-5838No exploit | Insufficient Session Expiration in linkstackorg/linkstacklinkstack · linkstack · CWE-613 | Critical9.8 | — | 0.5% | Oct 28, 2023 |
35Monitor | CVE-2023-5840No exploit | Weak Password Recovery Mechanism for Forgotten Password in linkstackorg/linkstacklinkstack · linkstack · CWE-640 | High8.8 | — | 0.7% | Oct 28, 2023 |
19Monitor | CVE-2024-35451No exploit | LinkStack 2.7.9 through 4.7.7 allows resources\views\components\favicon.blade.php link SSRF.linkstack · linkstack · CWE-918 | Medium4.8 | — | 0.3% | Nov 29, 2024 |
- CVE-2023-583839Monitor
Insufficient Session Expiration in linkstackorg/linkstack
CriticalCVSS 9.8No exploitEPSS 1%linkstack · linkstackOct 28, 2023
- CVE-2023-584035Monitor
Weak Password Recovery Mechanism for Forgotten Password in linkstackorg/linkstack
HighCVSS 8.8No exploitEPSS 1%linkstack · linkstackOct 28, 2023
- CVE-2024-3545119Monitor
LinkStack 2.7.9 through 4.7.7 allows resources\views\components\favicon.blade.php link SSRF.
MediumCVSS 4.8No exploitEPSS 0%linkstack · linkstackNov 29, 2024