Known Vulnerabilities for products from Kiwitcms

Listed below are 11 of the newest known vulnerabilities associated with the vendor "Kiwitcms".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-36809 json Kiwi TCMS, an open source test management system allows users to upload attachments to test plans, test cases, etc. Versions ... 5.4 - MEDIUM 2023-07-05 2023-07-12
CVE-2023-33977 json Kiwi TCMS is an open source test management system for both manual and automated testing. Kiwi TCMS allows users to upload at... 5.4 - MEDIUM 2023-06-06 2023-06-14
CVE-2023-32686 json Kiwi TCMS is an open source test management system for both manual and automated testing. Kiwi TCMS allows users to upload at... 5.4 - MEDIUM 2023-05-27 2023-06-02
CVE-2023-30628 json Kiwi TCMS is an open source test management system. In kiwitcms/Kiwi v12.2 and prior and kiwitcms/enterprise v12.2 and prior,... 8.8 - HIGH 2023-04-24 2023-05-04
CVE-2023-30613 json Kiwi TCMS, an open source test management system, allows users to upload attachments to test plans, test cases, etc. In versi... 9 - CRITICAL 2023-04-24 2023-05-03
CVE-2023-30544 json Kiwi TCMS is an open source test management system. In versions of Kiwi TCMS prior to 12.2, users were able to update their e... 4.3 - MEDIUM 2023-04-24 2023-05-03
CVE-2023-27489 json Kiwi TCMS is an open source test management system for both manual and automated testing. Kiwi TCMS accepts SVG files uploade... 5.4 - MEDIUM 2023-03-29 2023-04-06
CVE-2023-25171 json Kiwi TCMS, an open source test management system, does not impose rate limits in versions prior to 12.0. This makes it easier... 5.9 - MEDIUM 2023-02-15 2023-02-24
CVE-2023-25156 json Kiwi TCMS, an open source test management system, does not impose rate limits in versions prior to 12.0. This makes it easier... 9.8 - CRITICAL 2023-02-15 2023-02-24
CVE-2023-22451 json Kiwi TCMS is an open source test management system. In version 11.6 and prior, when users register new accounts and/or change... 8.8 - HIGH 2023-01-02 2023-01-09
CVE-2022-4105 json A stored XSS in a kiwi Test Plan can run malicious javascript which could be chained with an HTML injection to perform a UI r... 5.4 - MEDIUM 2022-11-21 2022-11-23

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report