Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mxgraph vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2017-18197
In mxGraphViewImageReader.java in mxGraph prior to 3.7.6, the SAXParserFactory instance in convert() is missing flags to prevent XML External Entity (XXE) attacks, as demonstrated by /ServerView.
Jgraph Mxgraph
6.1
CVSSv3
CVE-2022-40440
mxGraph v4.2.2 exists to contain a cross-site scripting (XSS) vulnerability via the setTooltips() function.
Jgraph Mxgraph 4.2.2
6.1
CVSSv3
CVE-2019-13127
An issue exists in mxGraph up to and including 4.0.0, related to the "draw.io Diagrams" plugin prior to 8.3.14 for Confluence and other products. Improper input validation/sanitization of a color field leads to XSS. This is associated with javascript/examples/graphedito...
Draw Draw.io Diagrams
Jgraph Mxgraph
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
race condition
CVE-2024-4249
CVE-2024-4244
CVE-2023-20198
TCP
CVE-2022-48648
CVE-2022-48636
CVE-2024-21345
SQL
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started