Skip to content
Noroxi

StrangeBee records

5 published records for vendor strangebee.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

5 records
  • An issue in StrangeBee TheHive v.5.0.8, v.4.1.21 and Cortex v.3.1.6 allows a remote attacker to gain privileges via Active Directory authent

    CriticalCVSS 9.8No exploitEPSS 1%

    strangebee · cortexSep 11, 2023

  • An improper authorization check in the User API in TheHive before 2.13.4 and 3.x before 3.3.1 allows users with read-only or read/write acce

    HighCVSS 8.8No exploitEPSS 2%

    strangebee · thehiveJun 2, 2019

  • TheHive 4.1.24 Unauthenticated Information Disclosure via /api/status Endpoint

    MediumCVSS 6.9No exploitEPSS 0%

    strangebee · thehiveJul 17, 2026

  • StrangeBee TheHive 5.1.0 to 5.1.9 and 5.2.0 to 5.2.8 is vulnerable to Cross Site Scripting (XSS) in the case attachment functionality which

    MediumCVSS 5.4No exploitEPSS 0%

    strangebee · thehiveJan 19, 2024

  • StrangeBee TheHive 5.2.0 to 5.2.8 is vulnerable to Cross Site Scripting (XSS) in the case reporting functionality.

    MediumCVSS 5.4No exploitEPSS 0%

    strangebee · thehiveJan 19, 2024