Show filters
26 Total Results
Displaying 11-20 of 26
Sort by:
Attacker Value
Unknown

CVE-2022-3127

Disclosure Date: September 05, 2022 (last updated February 24, 2025)
Cross-site Scripting (XSS) - Stored in GitHub repository jgraph/drawio prior to 20.2.8.
Attacker Value
Unknown

CVE-2022-3065

Disclosure Date: September 02, 2022 (last updated February 24, 2025)
Improper Access Control in GitHub repository jgraph/drawio prior to 20.2.8.
Attacker Value
Unknown

CVE-2022-2015

Disclosure Date: June 09, 2022 (last updated February 23, 2025)
Cross-site Scripting (XSS) - Stored in GitHub repository jgraph/drawio prior to 19.0.2.
Attacker Value
Unknown

CVE-2022-2014

Disclosure Date: June 09, 2022 (last updated February 23, 2025)
Code Injection in GitHub repository jgraph/drawio prior to 19.0.2.
Attacker Value
Unknown

CVE-2022-1815

Disclosure Date: May 25, 2022 (last updated February 23, 2025)
Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository jgraph/drawio prior to 18.1.2.
Attacker Value
Unknown

CVE-2022-1784

Disclosure Date: May 20, 2022 (last updated February 23, 2025)
Server-Side Request Forgery (SSRF) in GitHub repository jgraph/drawio prior to 18.0.8.
Attacker Value
Unknown

CVE-2022-1730

Disclosure Date: May 19, 2022 (last updated February 23, 2025)
Cross-site Scripting (XSS) - Stored in GitHub repository jgraph/drawio prior to 18.0.4.
Attacker Value
Unknown

CVE-2022-1774

Disclosure Date: May 18, 2022 (last updated February 23, 2025)
Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository jgraph/drawio prior to 18.0.7.
Attacker Value
Unknown

CVE-2022-1767

Disclosure Date: May 18, 2022 (last updated February 23, 2025)
Server-Side Request Forgery (SSRF) in GitHub repository jgraph/drawio prior to 18.0.7.
Attacker Value
Unknown

CVE-2022-1727

Disclosure Date: May 18, 2022 (last updated February 23, 2025)
Improper Input Validation in GitHub repository jgraph/drawio prior to 18.0.6.