Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2025-27409
Joplin is a free, open source note taking and to-do application, which can handle a large number of notes organised into notebooks. Prior to version …
Joplin
3.3.3+
HIGH 8.8
CVE-2025-27134
Joplin is a free, open source note taking and to-do application, which can handle a large number of notes organised into notebooks. Prior to version …
Joplin
3.3.3+
CRITICAL 9.6
CVE-2025-24028
Joplin is a free, open source note taking and to-do application, which can handle a large number of notes organised into notebooks. This vulnerabilit…
Joplin
3.2.12+
MEDIUM 5.4
CVE-2025-25187
Joplin is a free, open source note taking and to-do application, which can handle a large number of notes organised into notebooks. This vulnerabilit…
Joplin
3.1.24+
MEDIUM 5.5
CVE-2024-55630
Joplin is a free, open source note taking and to-do application, which can handle a large number of notes organised into notebooks. Joplin's HTML san…
Joplin
3.2.8+
HIGH 8.8
CVE-2024-53268
Joplin is an open source, privacy-focused note taking app with sync capabilities for Windows, macOS, Linux, Android and iOS. In affected versions att…
Joplin
3.0.3+
CRITICAL 9.6
CVE-2024-49362
Joplin is a free, open source note taking and to-do application. Joplin-desktop has a vulnerability that leads to remote code execution (RCE) when a …
Joplin
3.1+
CRITICAL 9.6
CVE-2024-40643
Joplin is a free, open source note taking and to-do application. Joplin fails to take into account that "<" followed by a non letter character will n…
Joplin
3.0.15+
CRITICAL 9.0
CVE-2023-45673
Joplin is a free, open source note taking and to-do application. A remote code execution (RCE) vulnerability in affected versions allows clicking on …
Joplin
2.13.3+
MEDIUM 5.4
CVE-2023-38506
Joplin is a free, open source note taking and to-do application. A Cross-site Scripting (XSS) vulnerability allows pasting untrusted data into the ri…
Joplin
2.12.10+
MEDIUM 5.4
CVE-2023-39517
Joplin is a free, open source note taking and to-do application. A Cross site scripting (XSS) vulnerability in affected versions allows clicking on a…
Joplin
2.12.8+
MEDIUM 5.4
CVE-2023-37898
Joplin is a free, open source note taking and to-do application. A Cross-site Scripting (XSS) vulnerability allows an untrusted note opened in safe m…
Joplin
2.12.9+
MEDIUM 6.1
CVE-2023-37298
Joplin before 2.11.5 allows XSS via a USE element in an SVG document.
Joplin
2.11.5+
MEDIUM 6.1
CVE-2023-37299
Joplin before 2.11.5 allows XSS via an AREA element of an image map.
Joplin
2.11.5+
MEDIUM 6.1
CVE-2022-45598
Cross Site Scripting vulnerability in Joplin Desktop App before v2.9.17 allows attacker to execute arbitrary code via improper santization.
Joplin
2.9.17+
MEDIUM 5.4
CVE-2021-33295
Cross Site Scripting (XSS) vulnerability in Joplin Desktop App before 1.8.5 allows attackers to execute aribrary code due to improper sanitizing of h…
Joplin
1.8.5+
CRITICAL 9.8
CVE-2022-23340
Joplin 2.6.10 allows remote attackers to execute system commands through malicious code in user search results.
Joplin
No fix yet
MEDIUM 6.1
CVE-2021-37916
Joplin before 2.0.9 allows XSS via button and form in the note body.
Joplin
2.0.9+
MEDIUM 6.1
CVE-2020-28249
Joplin 1.2.6 for Desktop allows XSS via a LINK element in a note.
Joplin
No fix yet
MEDIUM 6.1
CVE-2020-15930
An XSS issue in Joplin desktop 1.0.190 to 1.0.245 allows arbitrary code execution via a malicious HTML embed tag.
Joplin
after 1.0.245
MEDIUM 5.4
CVE-2020-9038
Joplin through 1.0.184 allows Arbitrary File Read via XSS.
Joplin
after 1.0.184
MEDIUM 6.1
CVE-2018-1000534
Joplin version prior to 1.0.90 contains a XSS evolving into code execution due to enabled nodeIntegration for that particular BrowserWindow instance …
Joplin
1.0.90+