Skip to content
Noroxi

PostHog records

7 published records for vendor posthog.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
14.3%
Median publish → KEV
No record has entered KEV

All records

7 records
  • CVE-2024-9710
    33Monitor

    PostHog database_schema Server-Side Request Forgery Information Disclosure Vulnerability

    HighCVSS 8.3No exploitEPSS 1%

    posthog · posthogNov 22, 2024

  • CVE-2025-1520
    32Monitor

    PostHog ClickHouse Table Functions SQL Injection Remote Code Execution Vulnerability

    HighCVSS 8.0No exploitEPSS 0%

    posthog · posthogApr 23, 2025

  • CVE-2025-1521
    26Monitor

    PostHog slack_incoming_webhook Server-Side Request Forgery Information Disclosure Vulnerability

    MediumCVSS 6.5No exploitEPSS 1%

    posthog · posthogApr 23, 2025

  • CVE-2025-1522
    26Monitor

    PostHog database_schema Server-Side Request Forgery Information Disclosure Vulnerability

    MediumCVSS 6.5No exploitEPSS 1%

    posthog · posthogApr 23, 2025

  • CVE-2022-0645
    24Monitor

    Open redirect vulnerability via endpoint authorize_and_redirect/?redirect= in posthog/posthog

    MediumCVSS 6.1No exploitEPSS 1%

    posthog · posthogApr 19, 2022

  • Cross-site scripting in PostHog-js

    MediumCVSS 6.1No exploitEPSS 0%

    posthog · posthog-jsMay 26, 2023

  • Authenticated PostHog users vulnerable to SSRF

    MediumCVSS 4.3No exploitEPSS 0%

    posthog · posthogDec 1, 2023