Vulnerability index

Browse CVEs

22 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2025-27409 Joplin is a free, open source note taking and to-do application, which can handle a large number of notes organised into notebooks. Prior to version … Joplin 3.3.3+ Fix from $1,9502025-04-30 HIGH 8.8 CVE-2025-27134 Joplin is a free, open source note taking and to-do application, which can handle a large number of notes organised into notebooks. Prior to version … Joplin 3.3.3+ Fix from $1,9502025-04-30 CRITICAL 9.6 CVE-2025-24028 Joplin is a free, open source note taking and to-do application, which can handle a large number of notes organised into notebooks. This vulnerabilit… Joplin 3.2.12+ Fix from $2,3002025-02-07 MEDIUM 5.4 CVE-2025-25187 Joplin is a free, open source note taking and to-do application, which can handle a large number of notes organised into notebooks. This vulnerabilit… Joplin 3.1.24+ Fix from $1,6002025-02-07 MEDIUM 5.5 CVE-2024-55630 Joplin is a free, open source note taking and to-do application, which can handle a large number of notes organised into notebooks. Joplin's HTML san… Joplin 3.2.8+ Fix from $1,6002025-02-07 HIGH 8.8 CVE-2024-53268 Joplin is an open source, privacy-focused note taking app with sync capabilities for Windows, macOS, Linux, Android and iOS. In affected versions att… Joplin 3.0.3+ Fix from $1,9502024-11-25 CRITICAL 9.6 CVE-2024-49362 Joplin is a free, open source note taking and to-do application. Joplin-desktop has a vulnerability that leads to remote code execution (RCE) when a … Joplin 3.1+ Fix from $2,3002024-11-14 CRITICAL 9.6 CVE-2024-40643 Joplin is a free, open source note taking and to-do application. Joplin fails to take into account that "<" followed by a non letter character will n… Joplin 3.0.15+ Fix from $2,3002024-09-09 CRITICAL 9.0 CVE-2023-45673 Joplin is a free, open source note taking and to-do application. A remote code execution (RCE) vulnerability in affected versions allows clicking on … Joplin 2.13.3+ Fix from $2,3002024-06-21 MEDIUM 5.4 CVE-2023-38506 Joplin is a free, open source note taking and to-do application. A Cross-site Scripting (XSS) vulnerability allows pasting untrusted data into the ri… Joplin 2.12.10+ Fix from $1,6002024-06-21 MEDIUM 5.4 CVE-2023-39517 Joplin is a free, open source note taking and to-do application. A Cross site scripting (XSS) vulnerability in affected versions allows clicking on a… Joplin 2.12.8+ Fix from $1,6002024-06-21 MEDIUM 5.4 CVE-2023-37898 Joplin is a free, open source note taking and to-do application. A Cross-site Scripting (XSS) vulnerability allows an untrusted note opened in safe m… Joplin 2.12.9+ Fix from $1,6002024-06-21 MEDIUM 6.1 CVE-2023-37298 Joplin before 2.11.5 allows XSS via a USE element in an SVG document. Joplin 2.11.5+ Fix from $1,6002023-06-30 MEDIUM 6.1 CVE-2023-37299 Joplin before 2.11.5 allows XSS via an AREA element of an image map. Joplin 2.11.5+ Fix from $1,6002023-06-30 MEDIUM 6.1 CVE-2022-45598 Cross Site Scripting vulnerability in Joplin Desktop App before v2.9.17 allows attacker to execute arbitrary code via improper santization. Joplin 2.9.17+ Fix from $1,6002023-01-31 MEDIUM 5.4 CVE-2021-33295 Cross Site Scripting (XSS) vulnerability in Joplin Desktop App before 1.8.5 allows attackers to execute aribrary code due to improper sanitizing of h… Joplin 1.8.5+ Fix from $1,6002022-06-16 CRITICAL 9.8 CVE-2022-23340 Joplin 2.6.10 allows remote attackers to execute system commands through malicious code in user search results. Joplin No fix yet Fix from $2,3002022-02-08 MEDIUM 6.1 CVE-2021-37916 Joplin before 2.0.9 allows XSS via button and form in the note body. Joplin 2.0.9+ Fix from $1,6002021-08-03 MEDIUM 6.1 CVE-2020-28249 Joplin 1.2.6 for Desktop allows XSS via a LINK element in a note. Joplin No fix yet Fix from $1,6002020-11-06 MEDIUM 6.1 CVE-2020-15930 An XSS issue in Joplin desktop 1.0.190 to 1.0.245 allows arbitrary code execution via a malicious HTML embed tag. Joplin after 1.0.245 Fix from $1,6002020-09-24 MEDIUM 5.4 CVE-2020-9038 Joplin through 1.0.184 allows Arbitrary File Read via XSS. Joplin after 1.0.184 Fix from $1,6002020-02-17 MEDIUM 6.1 CVE-2018-1000534 Joplin version prior to 1.0.90 contains a XSS evolving into code execution due to enabled nodeIntegration for that particular BrowserWindow instance … Joplin 1.0.90+ Fix from $1,6002018-06-26