Skip to content
Noroxi

mendix records

30 published records for vendor mendix.

Bug bounty scope

The product’s vendor appears in a public program. Matched by name; verify the scope text in the program.

All records

30 records
  • A vulnerability has been identified in Mendix Forgot Password Appstore module (All versions >= V3.3.0 < V3.5.1), Mendix Forgot Password Apps

    CriticalCVSS 9.8No exploitEPSS 1%

    mendix · forgot passwordMar 8, 2022

  • A vulnerability has been identified in Mendix SAML (Mendix 7 compatible) (All versions < V1.17.0), Mendix SAML (Mendix 8 compatible) (All ve

    CriticalCVSS 9.8No exploitEPSS 1%

    mendix · samlSep 13, 2022

  • A vulnerability has been identified in Mendix Forgot Password Appstore module (All versions >= V3.3.0 < V3.5.1).

    CriticalCVSS 9.8No exploitEPSS 1%

    mendix · forgot passwordMar 8, 2022

  • A vulnerability has been identified in Mendix SAML (Mendix 7 compatible) (All versions >= V1.17.3 < V1.18.0), Mendix SAML (Mendix 7 compatib

    CriticalCVSS 9.8No exploitEPSS 1%

    mendix · samlJun 13, 2023

  • A vulnerability has been identified in Mendix SAML (Mendix 7 compatible) (All versions < V1.17.0), Mendix SAML (Mendix 7 compatible) (All ve

    CriticalCVSS 9.8No exploitEPSS 1%

    mendix · samlNov 8, 2022

  • A vulnerability has been identified in Mendix Forgot Password Appstore module (All Versions < V3.2.1).

    HighCVSS 8.8No exploitEPSS 1%

    mendix · forgot passwordMar 15, 2021

  • A vulnerability has been identified in Mendix Applications using Mendix 7 (All versions < V7.23.19), Mendix Applications using Mendix 8 (All

    HighCVSS 8.8No exploitEPSS 1%

    mendix · mendixApr 16, 2021

  • A vulnerability has been identified in Mendix SAML Module (All versions < V2.1.2).

    HighCVSS 8.8No exploitEPSS 1%

    mendix · samlJun 8, 2021

  • A vulnerability has been identified in Mendix Runtime V7 (All versions < V7.23.29), Mendix Runtime V8 (All versions < V8.18.16), Mendix Runt

    HighCVSS 8.1No exploitEPSS 1%

    mendix · mendixMar 8, 2022

  • A vulnerability has been identified in Mendix Applications using Mendix 7 (All versions < V7.23.31), Mendix Applications using Mendix 8 (All

    HighCVSS 7.5No exploitEPSS 1%

    mendix · mendixApr 12, 2022

  • A vulnerability has been identified in Mendix SAML Module (Mendix 7 compatible) (All versions < V1.16.6), Mendix SAML Module (Mendix 8 compa

    HighCVSS 7.5No exploitEPSS 1%

    mendix · samlJun 14, 2022

  • A vulnerability has been identified in Mendix Applications using Mendix 7 (All versions < V7.23.31), Mendix Applications using Mendix 8 (All

    HighCVSS 7.5No exploitEPSS 1%

    mendix · mendixJul 12, 2022

  • A vulnerability has been identified in Mendix SAML (Mendix 7 compatible) (All versions >= V1.16.4 < V1.17.3), Mendix SAML (Mendix 8 compatib

    HighCVSS 7.5No exploitEPSS 1%

    mendix · samlMar 14, 2023

  • A vulnerability has been identified in Mendix Applications using Mendix 7 (All versions < V7.23.34), Mendix Applications using Mendix 8 (All

    HighCVSS 7.5No exploitEPSS 0%

    mendix · mendixFeb 14, 2023

  • A vulnerability has been identified in Mendix Runtime V10 (All versions < V10.16.0 only if the basic authentication mechanism is used by the

    MediumCVSS 6.9No exploitEPSS 0%

    mendix · mendixNov 12, 2024

  • A vulnerability has been identified in Mendix Applications using Mendix 7 (All versions < V7.23.29).

    MediumCVSS 6.5No exploitEPSS 1%

    mendix · mendixMar 8, 2022

  • A vulnerability has been identified in Mendix Excel Importer Module (Mendix 8 compatible) (All versions < V9.2.2), Mendix Excel Importer Mod

    MediumCVSS 6.5No exploitEPSS 1%

    mendix · excel importerJul 12, 2022

  • A vulnerability has been identified in Mendix Applications using Mendix 9 (All versions >= V9.11 < V9.15), Mendix Applications using Mendix

    MediumCVSS 6.5No exploitEPSS 1%

    mendix · mendixJul 12, 2022

  • A vulnerability has been identified in Mendix Applications using Mendix 7 (All versions < V7.23.27), Mendix Applications using Mendix 8 (All

    MediumCVSS 6.5No exploitEPSS 1%

    mendix · mendixApr 12, 2022

  • A vulnerability has been identified in Mendix Applications using Mendix 8 (All versions < V8.18.13), Mendix Applications using Mendix 9 (All

    MediumCVSS 6.5No exploitEPSS 1%

    mendix · mendixNov 9, 2021

  • CVE-2020-8160
    24Monitor

    MendixSSO <= 2.1.1 contains endpoints that make use of the openid handler, which is suffering from a Cross-Site Scripting vulnerability via

    MediumCVSS 6.1No exploitEPSS 1%

    mendix · mendixssoJan 6, 2021

  • A vulnerability has been identified in Mendix SAML Module (Mendix 7 compatible) (All versions < V1.16.6), Mendix SAML Module (Mendix 8 compa

    MediumCVSS 6.1No exploitEPSS 1%

    mendix · samlJun 14, 2022

  • A vulnerability has been identified in Mendix SAML (Mendix 8 compatible) (All versions >= V2.3.0 < V2.3.4), Mendix SAML (Mendix 9 compatible

    MediumCVSS 6.1No exploitEPSS 0%

    mendix · samlJan 10, 2023

  • A vulnerability has been identified in Mendix Applications using Mendix 7 (All versions < V7.23.26), Mendix Applications using Mendix 8 (All

    MediumCVSS 5.5No exploitEPSS 0%

    mendix · mendixNov 9, 2021

  • In Mendix 7.23.5 and earlier, issue in XML import mappings allow DOCTYPE declarations in the XML input that is potentially unsafe.

    MediumCVSS 5.3No exploitEPSS 1%

    mendix · mendixSep 10, 2019