Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In November 2023
The responses for web queries with certain parameters disclose internal path of resources. This information can be used to learn internal structure of the application and to further plot attacks against web servers and deployed web applications.
CVSS Score
5.3
EPSS Score
0.004
Published
2023-11-01
Cross-Site Request Forgery (CSRF) in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
CVSS Score
3.5
EPSS Score
0.003
Published
2023-11-01
Cross-Site Request Forgery (CSRF) in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
CVSS Score
3.5
EPSS Score
0.003
Published
2023-11-01
Insufficient Session Expiration in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
CVSS Score
4.3
EPSS Score
0.004
Published
2023-11-01
Cross-site Scripting (XSS) - Stored in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
CVSS Score
4.6
EPSS Score
0.004
Published
2023-11-01
Cross-site Scripting (XSS) - Reflected in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
CVSS Score
5.4
EPSS Score
0.004
Published
2023-11-01
Cross-site Scripting (XSS) - Stored in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
CVSS Score
5.4
EPSS Score
0.004
Published
2023-11-01
Cross-Site Request Forgery (CSRF) in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
CVSS Score
3.5
EPSS Score
0.003
Published
2023-11-01
Cross-site Scripting (XSS) - Stored in GitHub repository pkp/ojs prior to 3.3.0-16.
CVSS Score
3.5
EPSS Score
0.004
Published
2023-11-01
Cross-site Scripting (XSS) - DOM in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
CVSS Score
3.5
EPSS Score
0.004
Published
2023-11-01


Contact Us

Shodan ® - All rights reserved