Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Craterapp Subscribe
Total 8 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-1032 1 Craterapp 1 Crater 2022-04-04 6.5 MEDIUM 7.2 HIGH
Insecure deserialization of not validated module file in GitHub repository crater-invoice/crater prior to 6.0.6.
CVE-2022-1033 1 Craterapp 1 Crater 2022-03-28 6.5 MEDIUM 7.8 HIGH
Unrestricted Upload of File with Dangerous Type in GitHub repository crater-invoice/crater prior to 6.0.6.
CVE-2022-0514 1 Craterapp 1 Crater 2022-03-28 4.0 MEDIUM 6.5 MEDIUM
Business Logic Errors in GitHub repository crater-invoice/crater prior to 6.0.5.
CVE-2022-0515 1 Craterapp 1 Crater 2022-03-28 4.3 MEDIUM 4.3 MEDIUM
Cross-Site Request Forgery (CSRF) in GitHub repository crater-invoice/crater prior to 6.0.4.
CVE-2022-0203 1 Craterapp 1 Crater 2022-02-02 5.0 MEDIUM 5.3 MEDIUM
Improper Access Control in GitHub repository crater-invoice/crater prior to 6.0.2.
CVE-2022-0372 1 Craterapp 1 Crater 2022-02-02 3.5 LOW 5.4 MEDIUM
Cross-site Scripting (XSS) - Stored in Packagist bytefury/crater prior to 6.0.2.
CVE-2022-0242 1 Craterapp 1 Crater 2022-01-25 6.0 MEDIUM 7.2 HIGH
Unrestricted Upload of File with Dangerous Type in GitHub repository crater-invoice/crater prior to 6.0.
CVE-2021-4080 1 Craterapp 1 Crater 2022-01-18 6.5 MEDIUM 8.8 HIGH
crater is vulnerable to Unrestricted Upload of File with Dangerous Type