Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2023-46131 Grails is a framework used to build web applications with the Groovy programming language. A specially crafted web request can lead to a JVM crash or… Grails 3.3.17 / 4.1.3+ Fix from $1,9502023-12-21 CRITICAL 9.8 CVE-2022-41923 Grails Spring Security Core plugin is vulnerable to privilege escalation. The vulnerability allows an attacker access to one endpoint (i.e. the targe… Spring Security Core 3.3.2 / 4.0.5+ Fix from $2,3002022-11-23 CRITICAL 9.8 CVE-2022-35912 In grails-databinding in Grails before 3.3.15, 4.x before 4.1.1, 5.x before 5.1.9, and 5.2.x before 5.2.1 (at least when certain Java 8 configuration… Grails 3.3.15 / 4.1.1+ Fix from $2,3002022-07-19 HIGH 8.1 CVE-2019-12728 Grails before 3.3.10 used cleartext HTTP to resolve the SDKMan notification service. NOTE: users' apps were not resolving dependencies over cleartext… Grails 3.3.10+ Fix from $1,9502019-06-04 MEDIUM 6.1 CVE-2018-1000529 Grails Fields plugin version 2.2.7 contains a Cross Site Scripting (XSS) vulnerability in Using the display tag that can result in XSS . This vulnera… Grails Fields No fix yet Fix from $1,6002018-06-26 HIGH 7.5 CVE-2014-3626 The Grails Resource Plugin often has to exchange URIs for resources with other internal components. Those other components will decode any URI passed… Resources after 1.2.12 Fix from $1,9502018-03-19 MEDIUM 5.9 CVE-2017-6344 XML External Entity (XXE) vulnerability in Grails PDF Plugin 0.6 allows remote attackers to read arbitrary files via a crafted XML document. Pdf Plugin No fix yet Fix from $1,6002017-02-27