Loading HuntDB...

Vulnerabilities

CVE-2022-1034

CRITICAL

There is a Unrestricted Upload of File vulnerability in ShowDoc v2.10.3 in GitHub repository star7th/showdoc prior to 2.10.4.

Published Mar 22, 2022

CVE-2022-0964

HIGH

Stored XSS viva .webmv file upload in GitHub repository star7th/showdoc prior to 2.10.4.

Published Mar 15, 2022

CVE-2022-0965

CRITICAL

Stored XSS viva .ofd file upload in GitHub repository star7th/showdoc prior to 2.10.4.

Published Mar 15, 2022

CVE-2022-0966

MEDIUM

Stored XSS via File Upload in star7th/showdoc in GitHub repository star7th/showdoc prior to 2.4.10.

Published Mar 15, 2022

CVE-2022-0967

MEDIUM

Stored XSS via File Upload in star7th/showdoc in star7th/showdoc in GitHub repository star7th/showdoc prior to 2.10.4.

Published Mar 15, 2022

CVE-2022-0942

CRITICAL

Stored XSS due to Unrestricted File Upload in GitHub repository star7th/showdoc prior to 2.10.4.

Published Mar 15, 2022

CVE-2022-0957

HIGH

Stored XSS via File Upload in GitHub repository star7th/showdoc prior to 2.10.4.

Published Mar 15, 2022

CVE-2022-0956

HIGH

Stored XSS via File Upload in GitHub repository star7th/showdoc prior to v.2.10.4.

Published Mar 15, 2022

CVE-2022-0951

HIGH

File Upload Restriction Bypass leading to Stored XSS Vulnerability in GitHub repository star7th/showdoc prior to 2.10.4.

Published Mar 15, 2022

CVE-2022-0950

MEDIUM

Unrestricted Upload of File with Dangerous Type in GitHub repository star7th/showdoc prior to 2.10.4.

Published Mar 15, 2022

CVE-2022-0945

CRITICAL

Stored XSS viva axd and cshtml file upload in star7th/showdoc in GitHub repository star7th/showdoc prior to v2.10.4.

Published Mar 15, 2022

CVE-2022-0962

CRITICAL

Stored XSS viva .webma file upload in GitHub repository star7th/showdoc prior to 2.10.4.

Published Mar 14, 2022

CVE-2022-0960

CRITICAL

Stored XSS viva .properties file upload in GitHub repository star7th/showdoc prior to 2.10.4.

Published Mar 14, 2022

CVE-2022-0946

CRITICAL

Stored XSS viva cshtm file upload in GitHub repository star7th/showdoc prior to v2.10.4.

Published Mar 14, 2022

CVE-2022-0941

HIGH

Stored XSS due to Unrestricted File Upload in GitHub repository star7th/showdoc prior to v2.10.4.

Published Mar 14, 2022

CVE-2022-0940

MEDIUM

Stored XSS due to Unrestricted File Upload in GitHub repository star7th/showdoc prior to v2.10.4.

Published Mar 14, 2022

CVE-2022-0938

HIGH

Stored XSS via file upload in GitHub repository star7th/showdoc prior to v2.10.4.

Published Mar 14, 2022

CVE-2022-0937

MEDIUM

Stored xss in showdoc through file upload in GitHub repository star7th/showdoc prior to 2.10.4.

Published Mar 14, 2022

CVE-2022-0880

HIGH

Cross-site Scripting (XSS) - Stored in GitHub repository star7th/showdoc prior to 2.10.2.

Published Mar 12, 2022

CVE-2022-0409

HIGH

Unrestricted Upload of File with Dangerous Type in Packagist showdoc/showdoc prior to 2.10.2.

Published Feb 19, 2022

CVE-2022-0362

MEDIUM

SQL Injection in Packagist showdoc/showdoc prior to 2.10.3.

Published Jan 26, 2022

CVE-2021-4172

MEDIUM

Cross-site Scripting (XSS) - Stored in GitHub repository star7th/showdoc prior to 2.10.2.

Published Jan 22, 2022

CVE-2022-0079

MEDIUM

showdoc is vulnerable to Generation of Error Message Containing Sensitive Information

Published Jan 03, 2022

CVE-2021-4168

MEDIUM

showdoc is vulnerable to Cross-Site Request Forgery (CSRF)

Published Dec 26, 2021

CVE-2021-4000

MEDIUM

showdoc is vulnerable to URL Redirection to Untrusted Site

Published Dec 03, 2021

CVE-2021-3989

MEDIUM

showdoc is vulnerable to URL Redirection to Untrusted Site

Published Dec 01, 2021

CVE-2021-3990

MEDIUM

showdoc is vulnerable to Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)

Published Dec 01, 2021

CVE-2021-3993

MEDIUM

showdoc is vulnerable to Cross-Site Request Forgery (CSRF)

Published Dec 01, 2021

CVE-2021-4017

HIGH

showdoc is vulnerable to Cross-Site Request Forgery (CSRF)

Published Dec 01, 2021

CVE-2021-3683

MEDIUM

showdoc is vulnerable to Cross-Site Request Forgery (CSRF)

Published Nov 13, 2021

CVE-2021-3775

MEDIUM

showdoc is vulnerable to Cross-Site Request Forgery (CSRF)

Published Nov 13, 2021

CVE-2021-3776

MEDIUM

showdoc is vulnerable to Cross-Site Request Forgery (CSRF)

Published Nov 13, 2021

CVE-2021-3678

HIGH

showdoc is vulnerable to Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)

Published Aug 04, 2021

CVE-2021-3680

MEDIUM

showdoc is vulnerable to Missing Cryptographic Step

Published Aug 04, 2021