Known Vulnerabilities for BookStack by BookStackApp
Listed below are 10 of the newest known vulnerabilities associated with "BookStack" by "BookStackApp".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-5484 | A weakness has been identified in BookStackApp BookStack up to 26.03. Affected is the function chapterToMarkdown of the file ... | Not Provided | 2026-04-03 | 2026-04-03 |
| CVE-2023-4624 | Server-Side Request Forgery (SSRF) in GitHub repository bookstackapp/bookstack prior to v23.08. | 2.4 - LOW | 2023-08-30 | 2023-09-01 |
| CVE-2022-40690 | Cross-site scripting vulnerability in BookStack versions prior to v22.09 allows a remote authenticated attacker to inject an ... | 5.4 - MEDIUM | 2022-10-24 | 2022-10-24 |
| CVE-2022-0877 | Cross-site Scripting (XSS) - Stored in GitHub repository bookstackapp/bookstack prior to v22.02.3. | 5.4 - MEDIUM | 2022-03-08 | 2022-03-11 |
| CVE-2021-4194 | bookstack is vulnerable to Improper Access Control | 6.5 - MEDIUM | 2022-01-06 | 2022-07-25 |
| CVE-2021-4119 | bookstack is vulnerable to Improper Access Control | 9.8 - CRITICAL | 2021-12-15 | 2022-08-09 |
| CVE-2021-4026 | bookstack is vulnerable to Improper Access Control | 4.3 - MEDIUM | 2021-11-30 | 2022-08-09 |
| CVE-2021-3944 | bookstack is vulnerable to Cross-Site Request Forgery (CSRF) | 6.8 - MEDIUM | 2021-12-02 | 2021-12-04 |
| CVE-2021-3916 | bookstack is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') | 6.5 - MEDIUM | 2021-11-05 | 2021-11-09 |
| CVE-2021-3915 | bookstack is vulnerable to Unrestricted Upload of File with Dangerous Type | 5.7 - MEDIUM | 2021-11-13 | 2021-11-17 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Bookstackapp | Bookstack | 0.9.3 | |||
| Application | Bookstackapp | Bookstack | 0.9.2 | |||
| Application | Bookstackapp | Bookstack | 0.9.1 | |||
| Application | Bookstackapp | Bookstack | 0.9.0 | |||
| Application | Bookstackapp | Bookstack | 0.8.2 | |||
| Application | Bookstackapp | Bookstack | 0.8.1 | |||
| Application | Bookstackapp | Bookstack | 0.8.0 | |||
| Application | Bookstackapp | Bookstack | 0.7.6 | |||
| Application | Bookstackapp | Bookstack | 0.7.5 | |||
| Application | Bookstackapp | Bookstack | 0.7.4 | |||
| Application | Bookstackapp | Bookstack | 0.7.3 | |||
| Application | Bookstackapp | Bookstack | 0.7.2 | |||
| Application | Bookstackapp | Bookstack | 0.7.1 | |||
| Application | Bookstackapp | Bookstack | 0.7.0 | |||
| Application | Bookstackapp | Bookstack | 0.6.3 | |||
| Application | Bookstackapp | Bookstack | 0.6.2 | |||
| Application | Bookstackapp | Bookstack | 0.6.1 | |||
| Application | Bookstackapp | Bookstack | 0.6.0 | |||
| Application | Bookstackapp | Bookstack | 0.5.0 | |||
| Application | Bookstackapp | Bookstack | 0.30.5 |