Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2021-29024 |
|
Vulnerability in path-traversal (CVE-2021-29024)
vulnerability in path-traversal (CVE-2021-29024). Confidential information can be exposed externally.
|
| CVE-2021-29022 |
|
In InvoicePlane 1.5.11, the upload feature discloses the full path of the file upload directory.
In InvoicePlane 1.5.11, the upload feature discloses the full path of the file upload directory.
|
| CVE-2017-1000238 |
|
Unrestricted File Upload in invoiceplane (CVE-2017-1000238)
vulnerability in invoiceplane (CVE-2017-1000238). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1000239 |
|
Cross-Site Scripting (XSS) in invoiceplane (CVE-2017-1000239)
cross-site scripting in invoiceplane (CVE-2017-1000239). Risk of unauthorized operations or information disclosure.
|