Перейти к содержимому
Noroxi

Записи thymeleaf

4 опубликованных записей вендора thymeleaf.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
3
С записью об исправлении
100 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 21
  2. 23
  3. 26

Столбик: всего · тёмная часть: CISA KEV.

Все записи

4 записей
  • CVE-2021-43466
    40В плане

    In the thymeleaf-spring5:3.0.12 component, thymeleaf combined with specific scenarios in template injection may lead to remote code executio

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    thymeleaf · thymeleaf9 нояб. 2021 г.

  • CVE-2026-40478
    36Наблюдать

    Improper neutralization of specific syntax patterns for unauthorized expressions in Thymeleaf

    КритическаяCVSS 9,0Эксплойта нетEPSS 1 %

    thymeleaf · thymeleaf17 апр. 2026 г.

  • CVE-2026-40477
    36Наблюдать

    Improper restriction of the scope of accessible objects in Thymeleaf expressions

    КритическаяCVSS 9,0Proof of conceptEPSS 1 %

    thymeleaf · thymeleaf17 апр. 2026 г.

  • CVE-2023-38286
    30Наблюдать

    Thymeleaf through 3.1.1.RELEASE, as used in spring-boot-admin (aka Spring Boot Admin) through 3.1.1 and other products, allows sandbox bypas

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    thymeleaf · thymeleaf14 июл. 2023 г.