CVE-2026-33548
- EPSS 0.07%
- Veröffentlicht 23.03.2026 19:15:18
- Zuletzt bearbeitet 25.03.2026 13:55:15
Mantis Bug Tracker (MantisBT) is an open source issue tracker. In version 2.28.0, improper escaping of tag names retrieved from History in Timeline (my_view_page.php) allows an attacker to inject HTML and, if CSP settings permit, achieve execution of...
CVE-2026-33517
- EPSS 0.06%
- Veröffentlicht 23.03.2026 19:13:15
- Zuletzt bearbeitet 25.03.2026 13:58:07
Mantis Bug Tracker (MantisBT) is an open source issue tracker. In version 2.28.0, when deleting a Tag (tag_delete.php), improper escaping of its name when displaying the confirmation message allows an attacker to inject HTML and, if CSP settings perm...
CVE-2026-30849
- EPSS 0.09%
- Veröffentlicht 23.03.2026 19:10:34
- Zuletzt bearbeitet 25.03.2026 13:59:26
Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions prior to 2.28.1 running on MySQL family databases are affected by an authentication bypass vulnerability in the SOAP API, as a result of an improper type checking on the password...
CVE-2025-62520
- EPSS 0.05%
- Veröffentlicht 04.11.2025 21:31:13
- Zuletzt bearbeitet 10.11.2025 17:55:42
Mantis Bug Tracker (MantisBT) is an open source issue tracker. In versions 2.27.1 and below, due to insufficient access-level checks, any non-admin user with access to manage_config_columns_page.php can use the Copy From action to retrieve the column...
CVE-2025-55155
- EPSS 0.03%
- Veröffentlicht 04.11.2025 20:48:03
- Zuletzt bearbeitet 10.11.2025 18:02:32
Mantis Bug Tracker (MantisBT) is an open source issue tracker. In versions 2.27.1 and below, when a user edits their profile to change their e-mail address, the system saves it without validating that it actually belongs to the user. This could resul...
CVE-2025-47776
- EPSS 0.1%
- Veröffentlicht 04.11.2025 20:31:01
- Zuletzt bearbeitet 10.11.2025 17:59:50
Mantis Bug Tracker (MantisBT) is an open source issue tracker. Due to incorrect use of loose (==) instead of strict (===) comparison in the authentication code in versions 2.27.1 and below.PHP type juggling will cause certain MD5 hashes matching scie...
CVE-2025-46556
- EPSS 0.08%
- Veröffentlicht 04.11.2025 00:20:28
- Zuletzt bearbeitet 07.11.2025 18:30:03
Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.27.1 and below allow attackers to permanently corrupt issue activity logs by submitting extremely long notes (tested with 4,788,761 characters) due to a lack of server-side val...
CVE-2024-45792
- EPSS 0.66%
- Veröffentlicht 30.09.2024 15:15:05
- Zuletzt bearbeitet 15.08.2025 14:09:44
Mantis Bug Tracker (MantisBT) is an open source issue tracker. Using a crafted POST request, an unprivileged, registered user is able to retrieve information about other users' personal system profiles. This vulnerability is fixed in 2.26.4.
CVE-2024-34081
- EPSS 0.23%
- Veröffentlicht 14.05.2024 15:38:30
- Zuletzt bearbeitet 16.01.2025 16:42:57
MantisBT (Mantis Bug Tracker) is an open source issue tracker. Improper escaping of a custom field's name allows an attacker to inject HTML and, if CSP settings permit, achieve execution of arbitrary JavaScript when resolving or closing issues (`bug...
CVE-2024-34080
- EPSS 0.29%
- Veröffentlicht 14.05.2024 15:38:29
- Zuletzt bearbeitet 16.01.2025 16:44:40
MantisBT (Mantis Bug Tracker) is an open source issue tracker. If an issue references a note that belongs to another issue that the user doesn't have access to, then it gets hyperlinked. Clicking on the link gives an access denied error as expected, ...