Known Vulnerabilities for products from Okfn
Listed below are 9 of the newest known vulnerabilities associated with the vendor "Okfn".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-42032 json | CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, a v... | Not Provided | 2026-05-13 | 2026-05-15 |
| CVE-2026-42031 json | CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, a v... | Not Provided | 2026-05-13 | 2026-05-15 |
| CVE-2026-41255 json | CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, Acc... | Not Provided | 2026-05-13 | 2026-05-15 |
| CVE-2026-41132 json | CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, the... | Not Provided | 2026-05-13 | 2026-05-15 |
| CVE-2026-31663 json | Not Provided | 2026-04-24 | 2026-04-27 | |
| CVE-2023-32696 json | CKAN is an open-source data management system for powering data hubs and data portals. Prior to versions 2.9.9 and 2.10.1, th... | 8.8 - HIGH | 2023-05-30 | 2023-06-06 |
| CVE-2023-32321 json | CKAN is an open-source data management system for powering data hubs and data portals. Multiple vulnerabilities have been dis... | 9.8 - CRITICAL | 2023-05-26 | 2023-06-03 |
| CVE-2023-22746 json | CKAN is an open-source DMS (data management system) for powering data hubs and data portals. When creating a new container ba... | 7.5 - HIGH | 2023-02-03 | 2023-11-07 |
| CVE-2022-43685 json | CKAN through 2.9.6 account takeovers by unauthenticated users when an existing user id is sent via an HTTP POST request. This... | 8.8 - HIGH | 2022-11-22 | 2023-08-08 |
| CVE-2021-25967 json | In CKAN, versions 2.9.0 to 2.9.3 are affected by a stored XSS vulnerability via SVG file upload of users’ profile picture. ... | 5.4 - MEDIUM | 2021-12-01 | 2021-12-02 |