CVE-2023-39349
- EPSS 0.08%
- Veröffentlicht 07.08.2023 19:15:11
- Zuletzt bearbeitet 21.11.2024 08:15:12
Sentry is an error tracking and performance monitoring platform. Starting in version 22.1.0 and prior to version 23.7.2, an attacker with access to a token with few or no scopes can query `/api/0/api-tokens/` for a list of all tokens created by a use...
CVE-2023-36826
- EPSS 0.18%
- Veröffentlicht 25.07.2023 19:15:11
- Zuletzt bearbeitet 21.11.2024 08:10:40
Sentry is an error tracking and performance monitoring platform. Starting in version 8.21.0 and prior to version 23.5.2, an authenticated user can download a debug or artifact bundle from arbitrary organizations and projects with a known bundle ID. T...
CVE-2022-23485
- EPSS 0.29%
- Veröffentlicht 10.12.2022 01:15:10
- Zuletzt bearbeitet 21.11.2024 06:48:39
Sentry is an error tracking and performance monitoring platform. In versions of the sentry python library prior to 22.11.0 an attacker with a known valid invite link could manipulate a cookie to allow the same invite link to be reused on multiple acc...