CVE-2026-82081
- EPSS 0.15%
- Veröffentlicht 28.08.2026 02:40:33
- Zuletzt bearbeitet 09.09.2026 16:04:24
wallabag 2 through 2.6.14 allows SSRF because a crafted title or content field is mishandled during PDF export.
CVE-2023-0737
- EPSS 0.3%
- Veröffentlicht 15.11.2024 11:15:08
- Zuletzt bearbeitet 19.11.2024 14:43:04
wallabag version 2.5.2 contains a Cross-Site Request Forgery (CSRF) vulnerability that allows attackers to arbitrarily delete user accounts via the /account/delete endpoint. This issue is fixed in version 2.5.4.
CVE-2023-4455
- EPSS 0.28%
- Veröffentlicht 21.08.2023 10:15:10
- Zuletzt bearbeitet 21.11.2024 08:35:11
Cross-Site Request Forgery (CSRF) in GitHub repository wallabag/wallabag prior to 2.6.3.
CVE-2023-4454
- EPSS 0.23%
- Veröffentlicht 21.08.2023 10:15:09
- Zuletzt bearbeitet 21.11.2024 08:35:11
Cross-Site Request Forgery (CSRF) in GitHub repository wallabag/wallabag prior to 2.6.3.
CVE-2023-3566
- EPSS 1.37%
- Veröffentlicht 10.07.2023 16:15:56
- Zuletzt bearbeitet 21.11.2024 08:17:33
A vulnerability was found in wallabag 2.5.4. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /config of the component Profile Config. The manipulation of the argument Name leads to allocatio...
CVE-2023-0734
- EPSS 0.5%
- Veröffentlicht 05.03.2023 21:15:10
- Zuletzt bearbeitet 21.11.2024 07:37:43
Improper Authorization in GitHub repository wallabag/wallabag prior to 2.5.4.
CVE-2023-0735
- EPSS 0.3%
- Veröffentlicht 07.02.2023 23:15:09
- Zuletzt bearbeitet 21.11.2024 07:37:43
Cross-Site Request Forgery (CSRF) in GitHub repository wallabag/wallabag prior to 2.5.4.
CVE-2023-0736
- EPSS 0.44%
- Veröffentlicht 07.02.2023 23:15:09
- Zuletzt bearbeitet 21.11.2024 07:37:43
Cross-site Scripting (XSS) - Stored in GitHub repository wallabag/wallabag prior to 2.5.4.
CVE-2023-0609
- EPSS 0.64%
- Veröffentlicht 01.02.2023 12:15:09
- Zuletzt bearbeitet 21.11.2024 07:37:28
Improper Authorization in GitHub repository wallabag/wallabag prior to 2.5.3.
CVE-2023-0610
- EPSS 0.44%
- Veröffentlicht 01.02.2023 12:15:09
- Zuletzt bearbeitet 21.11.2024 07:37:28
Improper Authorization in GitHub repository wallabag/wallabag prior to 2.5.3.