İçeriğe atla
Noroxi

Leanote kayıtları

leanote üreticisine ait 9 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

  1. 18
  2. 19
  3. 20
  4. 22
  5. 24

Çubuk: toplam · koyu kısım: CISA KEV.

Tüm kayıtlar

9 kayıt
  • CVE-2020-26158
    39İzleyin

    Leanote Desktop through 2.6.2 allows XSS because a note's title is mishandled when the batch feature is triggered.

    KritikCVSS 9,6İstismar yokEPSS %2

    leanote · leanote30 Eyl 2020

  • CVE-2020-26157
    39İzleyin

    Leanote Desktop through 2.6.2 allows XSS because a note's title is mishandled during syncing.

    KritikCVSS 9,6İstismar yokEPSS %2

    leanote · leanote30 Eyl 2020

  • CVE-2021-43721
    24İzleyin

    Leanote 2.7.0 is vulnerable to Cross Site Scripting (XSS) in the markdown type note.

    OrtaCVSS 6,1İstismar yokEPSS %1

    leanote · leanote28 Mar 2022

  • Leanote-desktop version v2.5 is vulnerable to a XSS which leads to code execution due to enabled node integration

    OrtaCVSS 6,1İstismar yokEPSS %1

    leanote · desktop2 Oca 2018

  • CVE-2018-18553
    24İzleyin

    Leanote 2.6.1 has XSS via the Blog Basic Setting title field, which is mishandled during rendering of the "likes" page.

    OrtaCVSS 6,1İstismar yokEPSS %1

    leanote · leanote21 Eki 2018

  • Leanote version <= 2.5 is vulnerable to XSS due to not sanitized input in markdown notes

    OrtaCVSS 6,1İstismar yokEPSS %1

    leanote · leanote2 Oca 2018

  • Leanote prior to version 2.6 is affected by: Cross Site Scripting (XSS).

    OrtaCVSS 6,1İstismar yokEPSS %1

    leanote · leanote11 Tem 2019

  • CVE-2021-4263
    24İzleyin

    leanote history.js define cross site scripting

    OrtaCVSS 6,1İstismar yokEPSS %1

    leanote · leanote21 Ara 2022

  • CVE-2024-0849
    20İzleyin

    Leanote 2.7.0 - Local File Read

    OrtaCVSS 5,0İstismar yokEPSS %0

    leanote · desktop6 Şub 2024