showdoc/showdoc Security Advisories for v2.4.7 (37)
-
[MEDIUM] Showdoc Unauthenticated Access
PKSA-qb4b-fyr5-nv6t CVE-2018-19620 GHSA-pfrc-5hhq-6hvr
Affected version: <2.8.14
Reported by:
GitHub -
[HIGH] Unrestricted Upload of File with Dangerous Type in ShowDoc
PKSA-pk4f-p9fk-96n7 CVE-2022-1034 GHSA-xp82-jmw8-mjxp
Affected version: <2.10.4
Reported by:
GitHub -
[MEDIUM] Stored Cross-site Scripting in ShowDoc
PKSA-qmf9-znyj-tp1k CVE-2022-0945 GHSA-vpwq-6cp4-ffqc
Affected version: <2.10.4
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in ShowDoc
PKSA-bhn2-hv92-gphz CVE-2022-0957 GHSA-q73m-3q7r-fpf7
Affected version: <2.10.4
Reported by:
GitHub -
[MEDIUM] File Upload Restriction Bypass leading to Cross-site Scripting in ShowDoc
PKSA-msz9-c8mx-vw27 CVE-2022-0951 GHSA-j6jg-w79c-7p8v
Affected version: <2.10.4
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in ShowDoc
PKSA-4qpk-f4n8-6c56 CVE-2022-0950 GHSA-v94v-pxqp-5qgj
Affected version: <2.10.4
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in ShowDoc
PKSA-rz1p-h48f-6y8z CVE-2022-0956 GHSA-wg8p-w946-c482
Affected version: <2.10.4
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in ShowDoc
PKSA-7mft-9w3z-jgnw CVE-2022-0942 GHSA-9fcc-7g44-mxrj
Affected version: <2.10.4
Reported by:
GitHub -
[MEDIUM] Stored Cross-site Scripting in showdoc
PKSA-1jh6-b84r-94gc CVE-2022-0967 GHSA-3pg8-c473-w6rr
Affected version: <2.10.4
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in ShowDoc
PKSA-g9f6-yznh-3qjh CVE-2022-0965 GHSA-v8mp-hhjq-h4cj
Affected version: <2.10.4
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in ShowDoc
PKSA-g7hq-dfdv-6pns CVE-2022-0964 GHSA-xm3x-787m-p66r
Affected version: <2.10.4
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in ShowDoc
PKSA-kmn5-nhm7-4n48 CVE-2022-0966 GHSA-g585-j55v-38h7
Affected version: <2.10.4
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in ShowDoc
PKSA-j22q-54pz-n8hq CVE-2022-0941 GHSA-wg4r-q74r-p7c8
Affected version: <=2.10.3
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in ShowDoc
PKSA-xn79-c765-qmv6 CVE-2022-0937 GHSA-mg5h-9rhq-4cqx
Affected version: <=2.10.3
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in ShowDoc
PKSA-mj9w-41xx-k17h CVE-2022-0938 GHSA-mw75-qvfr-hpmr
Affected version: <=2.10.3
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in ShowDoc
PKSA-2dfc-tks9-5w7h CVE-2022-0940 GHSA-82j4-vr25-x394
Affected version: <=2.10.3
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in ShowDoc
PKSA-yh27-bp4f-7333 CVE-2022-0946 GHSA-qq74-vgcf-54c3
Affected version: <=2.10.3
Reported by:
GitHub -
[CRITICAL] Cross-site Scripting in showdoc/showdoc
PKSA-hgcj-w321-zps1 CVE-2022-0960 GHSA-rphc-h572-2x9f
Affected version: <2.10.4
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in ShowDoc
PKSA-jxqx-y4md-5vf5 CVE-2022-0962 GHSA-pccm-j6vj-jwwf
Affected version: <2.10.4
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in ShowDoc
PKSA-tpjt-md6x-gc6d CVE-2022-0880 GHSA-gq77-3r6x-383w
Affected version: <=2.10.3
Reported by:
GitHub -
[HIGH] Unrestricted Upload of File with Dangerous Type in showdoc
PKSA-2ywh-f1s2-bpyj CVE-2022-0409 GHSA-6x3j-x9rp-whxp
Affected version: <2.10.2
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting in showdoc
PKSA-vvn4-vcm5-9pcz CVE-2021-4172 GHSA-7x22-pmw5-66mq
Affected version: <2.10.2
Reported by:
GitHub -
[MEDIUM] SQL Injection in showdoc
PKSA-53cc-cpbx-hprj CVE-2022-0362 GHSA-9cq5-xgg4-x477
Affected version: <=2.10.2
Reported by:
GitHub -
[MEDIUM] showdoc is vulnerable to Generation of Error Message Containing Sensitive Information
PKSA-ynf9-pww6-fqtg CVE-2022-0079 GHSA-5mj6-3cmq-fh34
Affected version: <2.10.0
Reported by:
GitHub -
[MEDIUM] showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
PKSA-gjv6-ndrf-53rh CVE-2021-4168 GHSA-7vxc-chqj-h83g
Affected version: <2.9.15
Reported by:
GitHub -
[MEDIUM] Open Redirect in showdoc
PKSA-4p44-nhbx-khx9 CVE-2021-4000 GHSA-8c9x-wfgj-v78w
Affected version: <=2.9.13
Reported by:
GitHub -
[MEDIUM] showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
PKSA-6txn-85ch-bst7 CVE-2021-3993 GHSA-6pqm-xvfc-w7p4
Affected version: <2.9.13
Reported by:
GitHub -
[MEDIUM] showdoc is vulnerable to URL Redirection to Untrusted Site
PKSA-ftcx-fkm9-z7hh CVE-2021-3989 GHSA-f545-vpwp-r9j7
Affected version: <2.9.13
Reported by:
GitHub -
[HIGH] showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
PKSA-krwb-y5dp-z4p2 CVE-2021-4017 GHSA-f77h-m9w2-vvg2
Affected version: <2.9.13
Reported by:
GitHub -
[MEDIUM] showdoc is vulnerable to Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
PKSA-42vj-7g7s-ksct CVE-2021-3990 GHSA-vrgh-5w3c-ggf8
Affected version: <2.9.13
Reported by:
GitHub -
[MEDIUM] showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
PKSA-j2dy-1pv7-3g5g CVE-2021-3775 GHSA-pjjf-hc4q-g298
Affected version: <=2.9.12
Reported by:
GitHub -
[MEDIUM] showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
PKSA-w1mk-466j-1531 CVE-2021-3683 GHSA-x5jp-9fmm-m9pf
Affected version: <=2.9.12
Reported by:
GitHub -
[MEDIUM] showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
PKSA-96qd-2xrt-3ffr CVE-2021-3776 GHSA-m4hj-wg2r-qpcr
Affected version: <=2.9.12
Reported by:
GitHub -
[CRITICAL] Showdoc File Upload Vulnerability
PKSA-tmfp-qw1p-p7pw CVE-2021-41745 GHSA-4286-h47h-m5v6
Affected version: <2.8.5
Reported by:
GitHub -
[CRITICAL] Unrestricted File Upload in ShowDoc v2.9.5
PKSA-b265-5qck-n8mb CVE-2021-36440 GHSA-c442-3278-rhrg
Affected version: <2.9.6
Reported by:
GitHub -
[MEDIUM] Use of Cryptographically Weak Pseudo-Random Number Generator in showdoc
PKSA-5td3-p4xs-xb2j CVE-2021-3678 GHSA-j85q-whc9-g4p9
Affected version: <2.9.8
Reported by:
GitHub -
[MEDIUM] Inadequate Encryption Strength in showdoc
PKSA-b6nc-w1hf-vxyh CVE-2021-3680 GHSA-8vh3-29mr-m9xg
Affected version: <=2.9.8
Reported by:
GitHub