Vulnerability index

Browse CVEs

17 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2026-22187 Bio-Formats versions up to and including 8.3.0 perform unsafe Java deserialization of attacker-controlled memoization cache files (.bfmemo) during im… Bio Formats after 8.3.0 Fix from $1,9502026-01-07 HIGH 7.1 CVE-2026-22186 Bio-Formats versions up to and including 8.3.0 contain an XML External Entity (XXE) vulnerability in the Leica Microsystems metadata parsing componen… Bio Formats after 8.3.0 Fix from $1,9502026-01-07 MEDIUM 5.3 CVE-2025-54791 OMERO.web provides a web based client and plugin infrastructure. Prior to version 5.29.2, if an error occurred when resetting a user's password using… Omero Web 5.29.2+ Fix from $1,6002025-08-13 MEDIUM 6.1 CVE-2024-35180 OMERO.web provides a web based client and plugin infrastructure. There is currently no escaping or validation of the `callback` parameter that can be… Omero Web 5.26.0+ Fix from $1,6002024-05-21 MEDIUM 6.1 CVE-2021-41132 OMERO.web provides a web based client and plugin infrastructure. In versions prior to 5.11.0, a variety of templates do not perform proper sanitizati… Omero Figure 4.4.1 / 5.11.0+ Fix from $1,6002021-10-14 MEDIUM 6.5 CVE-2021-21376 OMERO.web is open source Django-based software for managing microscopy imaging. OMERO.web before version 5.9.0 loads various information about the cu… Omero.web 5.9.0+ Fix from $1,6002021-03-23 MEDIUM 5.4 CVE-2021-21377 OMERO.web is open source Django-based software for managing microscopy imaging. OMERO.web before version 5.9.0 supports redirection to a given URL af… Omero.web 5.9.0+ Fix from $1,6002021-03-23 CRITICAL 9.8 CVE-2019-16244 OMERO.server before 5.6.1 allows attackers to bypass the security filters and access hidden objects via a crafted query. Omero.server 5.6.1+ Fix from $2,3002020-07-22 HIGH 7.5 CVE-2019-9943 In ome.services.graphs.GraphTraversal.findObjectDetails in Open Microscopy Environment OMERO.server 5.1.0 through 5.6.0, permissions on OMERO model o… Omero.server after 5.6.0 Fix from $1,9502020-06-17 HIGH 7.5 CVE-2019-9944 In Open Microscopy Environment OMERO.server 5.0.0 through 5.6.0, the reading of files from imported image filesets may circumvent OMERO permissions r… Omero.server after 5.6.0 Fix from $1,9502020-06-17 MEDIUM 5.7 CVE-2020-7932 OMERO.web before 5.6.3 optionally allows sensitive data elements (e.g., a session key) to be passed as URL query parameters. If an attacker tricks a … Omero.web 5.6.3+ Fix from $1,6002020-06-17 MEDIUM 5.3 CVE-2019-16245 OMERO before 5.6.1 makes the details of each user available to all users. Omero 5.6.1+ Fix from $1,6002020-06-17 HIGH 8.8 CVE-2014-7198 OMERO before 5.0.6 has multiple CSRF vulnerabilities because the framework for OMERO's web interface lacks CSRF protection. Omero 5.0.6+ Fix from $1,9502019-04-01 MEDIUM 6.7 CVE-2018-1000635 The Open Microscopy Environment OMERO.server version 5.4.0 to 5.4.6 contains a Information Exposure Through Sent Data vulnerability in OMERO.server t… Omero after 5.4.6 Fix from $1,6002018-08-20 HIGH 7.2 CVE-2018-1000633 The Open Microscopy Environment OMERO.web version prior to 5.4.7 contains an Information Exposure Through Log Files vulnerability in the login form a… Omero 5.4.7+ Fix from $1,9502018-08-20 HIGH 7.2 CVE-2018-1000634 The Open Microscopy Environment OMERO.server version 5.4.0 to 5.4.6 contains an Improper Access Control vulnerability in User management that can res… Omero after 5.4.6 Fix from $1,9502018-08-20 HIGH 8.3 CVE-2017-1000438 In OMERO 5.3.3 or earlier a user could create an OriginalFile and adjust its path such that it now points to another user's file on the underlying fi… Omero after 5.3.3 Fix from $1,9502018-01-02