Known Vulnerabilities for Ckan by Okfn
Listed below are 9 of the newest known vulnerabilities associated with "Ckan" by "Okfn".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-42032 json | CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, a v... | Not Provided | 2026-05-13 | 2026-05-14 |
| CVE-2026-42031 json | CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, a v... | Not Provided | 2026-05-13 | 2026-05-13 |
| CVE-2026-41255 json | CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, Acc... | Not Provided | 2026-05-13 | 2026-05-14 |
| CVE-2026-41132 json | CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, the... | Not Provided | 2026-05-13 | 2026-05-14 |
| CVE-2026-33060 json | CKAN MCP Server is a tool for querying CKAN open data portals. Versions prior to 0.4.85 provide tools including ckan_package_... | Not Provided | 2026-03-20 | 2026-03-24 |
| CVE-2023-32696 json | CKAN is an open-source data management system for powering data hubs and data portals. Prior to versions 2.9.9 and 2.10.1, th... | 8.8 - HIGH | 2023-05-30 | 2023-06-06 |
| CVE-2023-32321 json | CKAN is an open-source data management system for powering data hubs and data portals. Multiple vulnerabilities have been dis... | 9.8 - CRITICAL | 2023-05-26 | 2023-06-03 |
| CVE-2023-22746 json | CKAN is an open-source DMS (data management system) for powering data hubs and data portals. When creating a new container ba... | 7.5 - HIGH | 2023-02-03 | 2023-11-07 |
| CVE-2022-43685 json | CKAN through 2.9.6 account takeovers by unauthenticated users when an existing user id is sent via an HTTP POST request. This... | 8.8 - HIGH | 2022-11-22 | 2023-08-08 |
| CVE-2021-25967 json | In CKAN, versions 2.9.0 to 2.9.3 are affected by a stored XSS vulnerability via SVG file upload of users’ profile picture. ... | 5.4 - MEDIUM | 2021-12-01 | 2021-12-02 |