Known Vulnerabilities for Gin-vue-admin by Gin-vue-admin Project

Listed below are 10 of the newest known vulnerabilities associated with the software "Gin-vue-admin" by "Gin-vue-admin Project".

These CVEs are retrieved based on exact matches on listed software and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2022-23131 In the case of instances where the SAML SSO authentication is enabled (non-default), session data can be modified by a malici... 9.1 - CRITICAL 2022-01-13 2022-01-13
CVE-2022-22821 NVIDIA NeMo before 1.6.0 contains a vulnerability in ASR WebApp, in which ../ Path Traversal may lead to deletion of any dire... Not Provided 2022-01-10 2022-01-08
CVE-2022-22293 admin/limits.php in Dolibarr 7.0.2 allows HTML injection, as demonstrated by the MAIN_MAX_DECIMALS_TOT parameter. Not Provided 2022-01-02 2022-01-02
CVE-2022-22125 In Halo, versions v1.0.0 to v1.4.17 (latest) are vulnerable to Stored Cross-Site Scripting (XSS) in the article tag. An authe... 4.8 - MEDIUM 2022-01-13 2022-01-13
CVE-2022-22117 In Directus, versions 9.0.0-alpha.4 through 9.4.1 allow unrestricted file upload of .html files in the media upload functiona... 5.4 - MEDIUM 2022-01-10 2022-01-10
CVE-2022-21666 Useful Simple Open-Source CMS (USOC) is a content management system (CMS) for programmers. Versions prior to Pb2.4Bfx3 allowe... 7.2 - HIGH 2022-01-10 2022-01-10
CVE-2022-21663 WordPress is a free and open-source content management system written in PHP and paired with a MariaDB database. On a multisi... 6.6 - MEDIUM 2022-01-06 2022-01-16
CVE-2021-46075 A Privilege Escalation vulnerability exists in Sourcecodester Vehicle Service Management System 1.0. Staff account users can ... 6.6 - MEDIUM 2022-01-06 2022-01-06
CVE-2021-45895 Netgen Tags Bundle 3.4.x before 3.4.11 and 4.0.x before 4.0.15 allows XSS in the Tags Admin interface. Not Provided 2021-12-27 2021-12-27
CVE-2021-45807 jpress v4.2.0 is vulnerable to command execution via io.jpress.web.admin._AddonController::doUploadAndInstall. Not Provided 2022-01-13 2022-01-13

