Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
By Recent Activity
calibre-web project calibre-web vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2022-0352
Cross-site Scripting (XSS) - Reflected in Pypi calibreweb prior to 0.6.16....
Calibre-web Project Calibre-web
9.1
CVSSv3
CVE-2022-0990
Server-Side Request Forgery (SSRF) in GitHub repository janeczku/calibre-web prior to 0.6.18....
Calibre-web Project Calibre-web
9.8
CVSSv3
CVE-2021-4171
calibre-web is vulnerable to Business Logic Errors...
Calibre-web Project Calibre-web
5.4
CVSSv3
CVE-2021-4170
calibre-web is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Calibre-web Project Calibre-web
9.8
CVSSv3
CVE-2020-12627
Calibre-Web 0.6.6 allows authentication bypass because of the 'A0Zr98j/3yX R~XHH!jmN]LWX/,?RT' hardcoded secret key....
Calibre-web Project Calibre-web 0.6.6
9.8
CVSSv3
CVE-2022-0766
Server-Side Request Forgery (SSRF) in GitHub repository janeczku/calibre-web prior to 0.6.17....
Calibre-web Project Calibre-web
6.5
CVSSv3
CVE-2022-0273
Improper Access Control in Pypi calibreweb prior to 0.6.16....
Calibre-web Project Calibre-web
9.9
CVSSv3
CVE-2022-0939
Server-Side Request Forgery (SSRF) in GitHub repository janeczku/calibre-web prior to 0.6.18....
Calibre-web Project Calibre-web
4.3
CVSSv3
CVE-2022-0405
Improper Access Control in GitHub repository janeczku/calibre-web prior to 0.6.16....
Calibre-web Project Calibre-web
9.8
CVSSv3
CVE-2022-30765
Calibre-Web before 0.6.18 allows user table SQL Injection....
Calibre-web Project Calibre-web 0.6.18
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
arbitrary
CVE-2022-2257
CVE-2013-4585
CVE-2013-4493
CVE-2022-26134
brute force
SQL
CVE-2022-30333
CVE-2022-33327
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »