Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 6.1
CVE-2024-22075
Firefly III (aka firefly-iii) before 6.1.1 allows webhooks HTML Injection.
Firefly Iii
6.1.1+
CRITICAL 9.8
CVE-2023-1788
Insufficient Session Expiration in GitHub repository firefly-iii/firefly-iii prior to 6.
Firefly Iii
6.0.0+
CRITICAL 9.8
CVE-2023-1789
Improper Input Validation in GitHub repository firefly-iii/firefly-iii prior to 6.0.0.
Firefly Iii
5.7.18+
MEDIUM 6.5
CVE-2023-0298
Incorrect Authorization in GitHub repository firefly-iii/firefly-iii prior to 5.8.0.
Firefly Iii
5.8.0+
HIGH 8.8
CVE-2021-3901
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
Firefly Iii
after 5.6.2
MEDIUM 6.5
CVE-2021-3900
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
Firefly Iii
after 5.6.2
HIGH 8.8
CVE-2021-3846
firefly-iii is vulnerable to Unrestricted Upload of File with Dangerous Type
Firefly Iii
5.6.2+
MEDIUM 5.4
CVE-2021-3851
firefly-iii is vulnerable to URL Redirection to Untrusted Site
Firefly Iii
5.6.2+
HIGH 8.8
CVE-2021-3819
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
Firefly Iii
5.6.1+
MEDIUM 6.5
CVE-2021-3728
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
Firefly Iii
Patch available
MEDIUM 6.5
CVE-2021-3730
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
Firefly Iii
Patch available
HIGH 7.5
CVE-2021-3663
firefly-iii is vulnerable to Improper Restriction of Excessive Authentication Attempts
Firefly Iii
after 5.5.12
MEDIUM 5.4
CVE-2019-14669
Firefly III 4.7.17.3 is vulnerable to stored XSS due to the lack of filtration of user-supplied data in the asset account name. The JavaScript code i…
Firefly Iii
Patch available
MEDIUM 5.4
CVE-2019-14670
Firefly III 4.7.17.3 is vulnerable to stored XSS due to the lack of filtration of user-supplied data in the bill name field. The JavaScript code is e…
Firefly Iii
Patch available
MEDIUM 5.4
CVE-2019-14672
Firefly III 4.7.17.5 is vulnerable to stored XSS due to the lack of filtration of user-supplied data in the liability name field. The JavaScript code…
Firefly Iii
Patch available
MEDIUM 6.1
CVE-2019-14667
Firefly III 4.7.17.4 is vulnerable to multiple stored XSS issues due to the lack of filtration of user-supplied data in the transaction description f…
Firefly Iii
Patch available
MEDIUM 5.4
CVE-2019-14668
Firefly III 4.7.17.3 is vulnerable to stored XSS due to the lack of filtration of user-supplied data in the transaction description field. The JavaSc…
Firefly Iii
Patch available
MEDIUM 5.4
CVE-2019-13644
Firefly III before 4.7.17.1 is vulnerable to stored XSS due to lack of filtration of user-supplied data in a budget name. The JavaScript code is cont…
Firefly Iii
4.7.17.1+
MEDIUM 5.4
CVE-2019-13645
Firefly III before 4.7.17.3 is vulnerable to stored XSS due to lack of filtration of user-supplied data in image file names. The JavaScript code is e…
Firefly Iii
4.7.17.3+
MEDIUM 5.4
CVE-2019-13646
Firefly III before 4.7.17.3 is vulnerable to reflected XSS due to lack of filtration of user-supplied data in a search query. NOTE: It is asserted th…
Firefly Iii
4.7.17.3+
MEDIUM 5.4
CVE-2019-13647
Firefly III before 4.7.17.3 is vulnerable to stored XSS due to lack of filtration of user-supplied data in image file content. The JavaScript code is…
Firefly Iii
4.7.17.3+