Collabora

Online

12 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.04%
  • Veröffentlicht 05.02.2026 23:38:02
  • Zuletzt bearbeitet 06.02.2026 15:14:47

Collabora Online is a collaborative online office suite based on LibreOffice technology. Prior to Collabora Online Development Edition version 25.04.08.2 and prior to Collabora Online versions 23.05.20.1, 24.04.17.3, and 25.04.7.5, a user with view-o...

  • EPSS 0.5%
  • Veröffentlicht 03.12.2025 18:25:59
  • Zuletzt bearbeitet 08.12.2025 19:37:15

Collabora Online - Built-in CODE Server (richdocumentscode) provides a built-in server with all of the document editing features of Collabora Online. In versions prior to 25.04.702, Collabora Online has a Configuration-Dependent RCE (OS Command Injec...

  • EPSS 0.94%
  • Veröffentlicht 15.04.2025 19:16:07
  • Zuletzt bearbeitet 16.04.2025 13:25:59

Collabora Online is a collaborative online office suite based on LibreOffice technology. In versions prior to 24.04.12.4, 23.05.19, and 22.05.25, there is a path traversal flaw in handling the CheckFileInfo BaseFileName field returned from WOPI serve...

  • EPSS 0.18%
  • Veröffentlicht 06.03.2025 19:15:26
  • Zuletzt bearbeitet 06.03.2025 19:15:26

Collabora Online is a collaborative online office suite based on LibreOffice. Macro support is disabled by default in Collabora Online, but can be enabled by an administrator. Collabora Online typically hosts each document instance within a jail and ...

  • EPSS 0.49%
  • Veröffentlicht 29.08.2024 17:15:08
  • Zuletzt bearbeitet 03.09.2024 15:13:16

Collabora Online is a collaborative online office suite based on LibreOffice technology. In the mobile (Android/iOS) device variants of Collabora Online it was possible to inject JavaScript via url encoded values in links contained in documents. Sinc...

  • EPSS 0.13%
  • Veröffentlicht 23.08.2024 15:15:15
  • Zuletzt bearbeitet 23.08.2024 16:18:28

Collabora Online is a collaborative online office suite based on LibreOffice. In affected versions of Collabora Online, https connections from coolwsd to other hosts may incompletely verify the remote host's certificate's against the full chain of tr...

  • EPSS 0.18%
  • Veröffentlicht 04.04.2024 15:15:38
  • Zuletzt bearbeitet 23.09.2025 00:54:18

Collabora Online is a collaborative online office suite based on LibreOffice. A stored cross-site scripting vulnerability was found in Collabora Online. An attacker could create a document with an XSS payload in document text referenced by field whic...

Exploit
  • EPSS 0.23%
  • Veröffentlicht 11.03.2024 22:15:54
  • Zuletzt bearbeitet 26.02.2025 15:14:55

Collabora Online is a collaborative online office suite based on LibreOffice technology. Each document in Collabora Online is opened by a separate "Kit" instance in a different "jail" with a unique directory "jailID" name. For security reasons, this ...

  • EPSS 0.21%
  • Veröffentlicht 15.05.2023 21:15:09
  • Zuletzt bearbeitet 21.11.2024 08:01:29

Collabora Online is a collaborative online office suite based on LibreOffice technology. This vulnerability report describes a reflected XSS vulnerability with full CSP bypass in Nextcloud installations using the recommended bundle. The vulnerability...

  • EPSS 0.22%
  • Veröffentlicht 13.12.2021 20:15:07
  • Zuletzt bearbeitet 21.11.2024 06:29:51

Collabora Online is a collaborative online office suite based on LibreOffice technology. In affected versions a reflected XSS vulnerability was found in Collabora Online. An attacker could inject unescaped HTML into a variable as they created the Col...