Vulnerability index

Browse CVEs

21 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.1 CVE-2026-35210 OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 7.260326.0, an authorization bypass vul… Opencti 7.260326.0+ Fix from $1,9502026-07-08 MEDIUM 6.5 CVE-2026-35211 OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 7.260401.0, the OpenCTI GraphQL API exp… Opencti 7.260401.0+ Fix from $1,6002026-07-08 MEDIUM 6.1 CVE-2026-35212 OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Versions prior to 7.260227.0 are vulnerable to X… Opencti 7.260227.0+ Fix from $1,6002026-06-02 HIGH 7.2 CVE-2026-44730 OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 6.9.7, an organization admin can escala… Opencti 6.9.7+ Fix from $1,9502026-05-26 CRITICAL 9.8 CVE-2026-27960 OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. In versions 6.6.0 through 6.9.12, there is a pri… Opencti 6.9.13+ Fix from $2,3002026-05-05 HIGH 7.2 CVE-2026-39980 OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 6.9.5, the safeEjs.ts file does not pro… Opencti 6.9.5+ Fix from $1,9502026-04-09 HIGH 8.1 CVE-2026-21886 OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to version 6.9.1, the GraphQL mutations "I… Opencti 6.9.1+ Fix from $1,9502026-03-17 HIGH 7.7 CVE-2026-21887 OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 6.8.16, the OpenCTI platform’s data ing… Opencti 6.8.16+ Fix from $1,9502026-03-12 MEDIUM 6.1 CVE-2020-37044 OpenCTI 3.3.1 is vulnerable to a reflected cross-site scripting (XSS) attack via the /graphql endpoint. An attacker can inject arbitrary JavaScript c… Opencti No fix yet Fix from $1,6002026-01-30 HIGH 7.5 CVE-2020-37041 OpenCTI 3.3.1 is vulnerable to a directory traversal attack via the static/css endpoint. An unauthenticated attacker can read arbitrary files from th… Opencti No fix yet Fix from $1,9502026-01-30 MEDIUM 6.1 CVE-2025-61782 OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to version 6.8.3, an open redirect vulnera… Opencti 6.8.3+ Fix from $1,6002026-01-07 CRITICAL 9.1 CVE-2025-61781 OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to version 6.8.1, the GraphQL mutation "Wo… Opencti 6.8.1+ Fix from $2,3002026-01-05 MEDIUM 5.4 CVE-2025-46732 OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to version 6.6.6, an IDOR vulnerability in… Opencti 6.6.6+ Fix from $1,6002025-07-18 MEDIUM 6.8 CVE-2025-26621 OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to version 6.5.2, any user with the capabi… Opencti 6.5.2+ Fix from $1,6002025-05-19 CRITICAL 9.1 CVE-2025-24977 OpenCTI is an open cyber threat intelligence (CTI) platform. Prior to version 6.4.11 any user with the capability `manage customizations` can execute… Opencti 6.4.11+ Fix from $2,3002025-05-05 MEDIUM 6.3 CVE-2025-24887 OpenCTI is an open-source cyber threat intelligence platform. In versions starting from 6.4.8 to before 6.4.10, the allow/deny lists can be bypassed,… Opencti after 6.4.10 Fix from $1,6002025-04-30 HIGH 8.1 CVE-2024-45404 OpenCTI is an open-source cyber threat intelligence platform. In versions below 6.2.18, because the function to limit the rate of OTP does not exist,… Opencti 6.2.18+ Fix from $1,9502024-12-12 HIGH 8.2 CVE-2024-37155 OpenCTI is an open source platform allowing organizations to manage their cyber threat intelligence knowledge and observables. Prior to version 6.1.9… Opencti 6.1.9+ Fix from $1,9502024-11-18 HIGH 8.1 CVE-2024-26139 OpenCTI is an open source platform allowing organizations to manage their cyber threat intelligence knowledge and observables. Due to lack of certain… Opencti after 5.12.31 Fix from $1,9502024-05-23 HIGH 7.5 CVE-2022-30290 In OpenCTI through 5.2.4, a broken access control vulnerability has been identified in the profile endpoint. An attacker can abuse the identified vul… Opencti after 5.2.4 Fix from $1,9502022-07-05 MEDIUM 5.4 CVE-2022-30289 A stored Cross-site Scripting (XSS) vulnerability was identified in the Data Import functionality of OpenCTI through 5.2.4. An attacker can abuse the… Opencti after 5.2.4 Fix from $1,6002022-07-05