Known Vulnerabilities for products from Tryton
Listed below are 12 of the newest known vulnerabilities associated with the vendor "Tryton".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-26662 json | An XML Entity Expansion (XEE) issue was discovered in Tryton Application Platform (Server) 5.x through 5.0.45, 6.x through 6.... | 7.5 - HIGH | 2022-03-10 | 2022-03-18 |
| CVE-2022-26661 json | An XXE issue was discovered in Tryton Application Platform (Server) 5.x through 5.0.45, 6.x through 6.0.15, and 6.1.x and 6.2... | 6.5 - MEDIUM | 2022-03-10 | 2022-03-18 |
| CVE-2019-10868 json | In trytond/model/modelstorage.py in Tryton 4.2 before 4.2.21, 4.4 before 4.4.19, 4.6 before 4.6.14, 4.8 before 4.8.10, and 5.... | 6.5 - MEDIUM | 2019-04-05 | 2020-08-26 |
| CVE-2018-19443 json | The client in Tryton 5.x before 5.0.1 tries to make a connection to the bus in cleartext instead of encrypted under certain c... | 5.9 - MEDIUM | 2018-11-22 | 2018-12-20 |
| CVE-2017-0360 json | file_open in Tryton 3.x and 4.x through 4.2.2 allows remote authenticated users with certain permissions to read arbitrary fi... | Not Provided | 2017-04-04 | 2025-04-20 |
| CVE-2016-1242 json | file_open in Tryton before 3.2.17, 3.4.x before 3.4.14, 3.6.x before 3.6.12, 3.8.x before 3.8.8, and 4.x before 4.0.4 allows ... | Not Provided | 2016-09-07 | 2026-05-06 |
| CVE-2016-1241 json | Tryton 3.x before 3.2.17, 3.4.x before 3.4.14, 3.6.x before 3.6.12, 3.8.x before 3.8.8, and 4.x before 4.0.4 allow remote aut... | Not Provided | 2016-09-07 | 2026-05-06 |
| CVE-2015-0861 json | model/modelstorage.py in trytond 3.2.x before 3.2.10, 3.4.x before 3.4.8, 3.6.x before 3.6.5, and 3.8.x before 3.8.1 allows r... | Not Provided | 2016-04-13 | 2026-05-06 |
| CVE-2014-6633 json | The safe_eval function in trytond in Tryton before 2.4.15, 2.6.x before 2.6.14, 2.8.x before 2.8.11, 3.0.x before 3.0.7, and ... | 8.8 - HIGH | 2018-04-12 | 2018-05-22 |
| CVE-2013-4510 json | Directory traversal vulnerability in the client in Tryton 3.0.0, as distributed before 20131104 and earlier, allows remote se... | Not Provided | 2013-11-18 | 2026-04-29 |
| CVE-2012-2238 json | trytond 2.4: ModelView.button fails to validate authorization | 7.5 - HIGH | 2019-11-21 | 2019-11-22 |
| CVE-2012-0215 json | model/modelstorage.py in the Tryton application framework (trytond) before 2.4.0 for Python does not properly restrict access... | Not Provided | 2012-07-12 | 2026-04-29 |