Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
8.6
CVE-2026-72536
- EPSS 0.42%
- Veröffentlicht 11.08.2026 11:07:07
- Zuletzt bearbeitet 11.08.2026 13:19:02
A missing authentication vulnerability in Chaskiq through commit 46dfdd1 allows unauthenticated remote attackers to manipulate any tenant Stripe subscription via the stripeCreateIntent GraphQL mutation. The mutation lacks authentication and authoriza...
8.6
CVE-2026-72535
- EPSS 0.42%
- Veröffentlicht 11.08.2026 11:06:55
- Zuletzt bearbeitet 11.08.2026 13:19:02
A missing authentication vulnerability in Chaskiq through commit 46dfdd1 allows unauthenticated remote attackers to mint Stripe Billing Portal sessions for any tenant via the stripeCustomerPortal GraphQL mutation. The mutation performs no authenticat...
6.1
CVE-2021-3853
- EPSS 0.62%
- Veröffentlicht 17.01.2022 12:15:09
- Zuletzt bearbeitet 21.11.2024 06:22:39
chaskiq is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
5.4
CVE-2021-3857
- EPSS 0.6%
- Veröffentlicht 17.01.2022 12:15:09
- Zuletzt bearbeitet 21.11.2024 06:22:40
chaskiq is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
1