Known Vulnerabilities for products from Sfu
Listed below are 17 of the newest known vulnerabilities associated with the vendor "Sfu".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-47271 json | PKP-WAL (aka PKP Web Application Library or pkp-lib) before 3.3.0-16, as used in Open Journal Systems (OJS) and other product... | 5.3 - MEDIUM | 2023-11-06 | 2023-11-14 |
| CVE-2023-5904 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 5.4 - MEDIUM | 2023-11-07 | 2023-11-13 |
| CVE-2023-5903 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 5.4 - MEDIUM | 2023-11-07 | 2023-11-13 |
| CVE-2023-5902 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 4.3 - MEDIUM | 2023-11-07 | 2023-11-13 |
| CVE-2023-5901 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 4.8 - MEDIUM | 2023-11-07 | 2023-11-16 |
| CVE-2023-5900 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 5.4 - MEDIUM | 2023-11-07 | 2023-11-16 |
| CVE-2023-5897 json | Cross-Site Request Forgery (CSRF) in GitHub repository pkp/customLocale prior to 1.2.0-1. | 8.8 - HIGH | 2023-11-01 | 2023-11-08 |
| CVE-2023-5896 json | Cross-site Scripting (XSS) - Stored in GitHub repository pkp/pkp-lib prior to 3.4.0-4. | 5.4 - MEDIUM | 2023-11-01 | 2023-11-06 |
| CVE-2023-5895 json | Cross-site Scripting (XSS) - DOM in GitHub repository pkp/pkp-lib prior to 3.3.0-16. | 5.4 - MEDIUM | 2023-11-01 | 2023-11-08 |
| CVE-2023-5894 json | Cross-site Scripting (XSS) - Stored in GitHub repository pkp/ojs prior to 3.3.0-16. | 5.4 - MEDIUM | 2023-11-01 | 2023-11-08 |
| CVE-2023-5893 json | Cross-Site Request Forgery (CSRF) in GitHub repository pkp/pkp-lib prior to 3.3.0-16. | 8.8 - HIGH | 2023-11-01 | 2023-11-08 |
| CVE-2023-5892 json | Cross-site Scripting (XSS) - Stored in GitHub repository pkp/pkp-lib prior to 3.3.0-16. | 5.4 - MEDIUM | 2023-11-01 | 2023-11-08 |
| CVE-2023-5891 json | Cross-site Scripting (XSS) - Reflected in GitHub repository pkp/pkp-lib prior to 3.3.0-16. | 5.4 - MEDIUM | 2023-11-01 | 2023-11-09 |
| CVE-2023-5890 json | Cross-site Scripting (XSS) - Stored in GitHub repository pkp/pkp-lib prior to 3.3.0-16. | 5.4 - MEDIUM | 2023-11-01 | 2023-11-09 |
| CVE-2023-5626 json | Cross-Site Request Forgery (CSRF) in GitHub repository pkp/ojs prior to 3.3.0-16. | 8.8 - HIGH | 2023-10-18 | 2023-10-25 |
| CVE-2019-19909 json | An issue was discovered in Public Knowledge Project (PKP) pkp-lib before 3.1.2-2, as used in Open Journal Systems (OJS) befor... | 8.8 - HIGH | 2019-12-19 | 2020-08-24 |
| CVE-2018-12229 json | Cross-site scripting (XSS) vulnerability in Public Knowledge Project (PKP) Open Journal System (OJS) 3.0.0 to 3.1.1-1 allows ... | 6.1 - MEDIUM | 2018-06-12 | 2018-08-08 |
Known software with vulnerabilities from Sfu
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Sfu | Open Journal System | 2.0.0-0 |