Known Vulnerabilities for products from Moinmo
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Moinmo".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-25074 json | The cache action in action/cache.py in MoinMoin through 1.9.10 allows directory traversal through a crafted HTTP request. An ... | 9.8 - CRITICAL | 2020-11-10 | 2020-11-24 |
| CVE-2020-15275 json | MoinMoin is a wiki engine. In MoinMoin before version 1.9.11, an attacker with write permissions can upload an SVG file that ... | 5.4 - MEDIUM | 2020-11-11 | 2022-10-18 |
| CVE-2017-5934 json | Cross-site scripting (XSS) vulnerability in the link dialogue in GUI editor in MoinMoin before 1.9.10 allows remote attackers... | 6.1 - MEDIUM | 2018-10-15 | 2018-11-29 |
| CVE-2016-9119 json | Cross-site scripting (XSS) vulnerability in the link dialogue in GUI editor in MoinMoin before 1.9.8 allows remote attackers ... | Not Provided | 2017-01-30 | 2025-04-20 |
| CVE-2016-7148 json | MoinMoin 1.9.8 allows remote attackers to conduct "JavaScript injection" attacks by using the "page creation" approach, relat... | Not Provided | 2016-11-10 | 2026-05-06 |
| CVE-2016-7146 json | MoinMoin 1.9.8 allows remote attackers to conduct "JavaScript injection" attacks by using the "page creation or crafted URL" ... | Not Provided | 2016-11-10 | 2026-05-06 |
| CVE-2012-6495 json | Multiple directory traversal vulnerabilities in the (1) twikidraw (action/twikidraw.py) and (2) anywikidraw (action/anywikidr... | Not Provided | 2013-01-03 | 2026-04-29 |
| CVE-2012-6082 json | Cross-site scripting (XSS) vulnerability in the rsslink function in theme/__init__.py in MoinMoin 1.9.5 allows remote attacke... | Not Provided | 2013-01-03 | 2026-04-29 |
| CVE-2012-6081 json | Multiple unrestricted file upload vulnerabilities in the (1) twikidraw (action/twikidraw.py) and (2) anywikidraw (action/anyw... | Not Provided | 2013-01-03 | 2026-04-29 |
| CVE-2012-6080 json | Directory traversal vulnerability in the _do_attachment_move function in the AttachFile action (action/AttachFile.py) in Moin... | Not Provided | 2013-01-03 | 2026-04-29 |
| CVE-2012-4404 json | security/__init__.py in MoinMoin 1.9 through 1.9.4 does not properly handle group names that contain virtual group names such... | Not Provided | 2012-09-10 | 2026-04-29 |
| CVE-2011-1058 json | Cross-site scripting (XSS) vulnerability in the reStructuredText (rst) parser in parser/text_rst.py in MoinMoin before 1.9.3,... | Not Provided | 2011-02-22 | 2026-04-29 |
| CVE-2010-2970 json | Multiple cross-site scripting (XSS) vulnerabilities in MoinMoin 1.9.x before 1.9.3 allow remote attackers to inject arbitrary... | Not Provided | 2010-08-05 | 2026-04-29 |
| CVE-2010-2969 json | Multiple cross-site scripting (XSS) vulnerabilities in MoinMoin 1.7.3 and earlier, and 1.9.x before 1.9.3, allow remote attac... | Not Provided | 2010-08-05 | 2026-04-29 |
| CVE-2010-2487 json | Multiple cross-site scripting (XSS) vulnerabilities in MoinMoin 1.7.3 and earlier, 1.8.x before 1.8.8, and 1.9.x before 1.9.3... | Not Provided | 2010-08-05 | 2026-04-29 |
| CVE-2010-1238 json | MoinMoin 1.7.1 allows remote attackers to bypass the textcha protection mechanism by modifying the textcha-question and textc... | Not Provided | 2010-04-05 | 2026-04-29 |
| CVE-2010-0828 json | Cross-site scripting (XSS) vulnerability in action/Despam.py in the Despam action module in MoinMoin 1.8.7 and 1.9.2 allows r... | Not Provided | 2010-04-05 | 2026-04-29 |
| CVE-2010-0717 json | The default configuration of cfg.packagepages_actions_excluded in MoinMoin before 1.8.7 does not prevent unsafe package actio... | Not Provided | 2010-02-26 | 2026-04-29 |
| CVE-2010-0669 json | MoinMoin before 1.8.7 and 1.9.x before 1.9.2 does not properly sanitize user profiles, which has unspecified impact and attac... | Not Provided | 2010-02-26 | 2026-04-29 |
| CVE-2010-0668 json | Unspecified vulnerability in MoinMoin 1.5.x through 1.7.x, 1.8.x before 1.8.7, and 1.9.x before 1.9.2 has unknown impact and ... | Not Provided | 2010-02-26 | 2026-04-29 |
Known software with vulnerabilities from Moinmo
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Moinmo | Moinmoin | 0.1 |