CVE-2025-61776
- EPSS 0.07%
- Veröffentlicht 07.10.2025 18:57:06
- Zuletzt bearbeitet 08.10.2025 19:38:09
Dependency-Track is a component analysis platform that allows organizations to identify and reduce risk in the software supply chain. Prior to version 4.13.5, Dependency-Track may send credentials meant for a private NuGet repository to `api.nuget.or...
CVE-2025-27137
- EPSS 0.05%
- Veröffentlicht 24.02.2025 21:15:11
- Zuletzt bearbeitet 24.02.2025 21:15:11
Dependency-Track is a component analysis platform that allows organizations to identify and reduce risk in the software supply chain. Dependency-Track allows users with the `SYSTEM_CONFIGURATION` permission to customize notification templates. Templa...
CVE-2024-54002
- EPSS 0.11%
- Veröffentlicht 04.12.2024 16:15:26
- Zuletzt bearbeitet 04.12.2024 16:15:26
Dependency-Track is a Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain. Performing a login request against the /api/v1/user/login endpoint with a username that exist in the system takes si...