Known Vulnerabilities for products from Koji Project
Listed below are 3 of the newest known vulnerabilities associated with the vendor "Koji Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-17109 json | Koji through 1.18.0 allows remote Directory Traversal, with resultant Privilege Escalation. | 6.5 - MEDIUM | 2019-10-09 | 2023-11-07 |
| CVE-2018-1002150 json | Koji version 1.12, 1.13, 1.14 and 1.15 contain an incorrect access control vulnerability resulting in arbitrary filesystem re... | 9.1 - CRITICAL | 2018-04-04 | 2022-12-21 |
| CVE-2017-1002153 json | Koji 1.13.0 does not properly validate SCM paths, allowing an attacker to work around blacklisted paths for build submission. | 7.5 - HIGH | 2017-10-06 | 2023-03-01 |
Known software with vulnerabilities from Koji Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Koji Project | Koji | 1.10.0 |