Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Dspace HIGH 7.2
CVE-2022-31194

DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace…

Fix: 6.4+
Fix from $1,950 2022-08-01
Dspace HIGH 7.2
CVE-2022-31195

DSpace open source software is a repository application which provides durable access to digital resources. In affected versions the ItemImportServic…

Fix: 6.4+
Fix from $1,950 2022-08-01
Dspace MEDIUM 6.1
CVE-2022-31191

DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace…

Fix: 6.4+
Fix from $1,600 2022-08-01
Dspace MEDIUM 6.1
CVE-2022-31192

DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace…

Fix: 6.4+
Fix from $1,600 2022-08-01
Dspace MEDIUM 6.1
CVE-2022-31193

DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace…

Fix: 6.4+
Fix from $1,600 2022-08-01
Dspace MEDIUM 5.3
CVE-2022-31189

DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace…

Fix: 6.4+
Fix from $1,600 2022-08-01
Dspace MEDIUM 5.3
CVE-2022-31190

DSpace open source software is a repository application which provides durable access to digital resources. dspace-xmlui is a UI component for DSpace…

Fix: 6.4+
Fix from $1,600 2022-08-01
Dspace HIGH 7.2
CVE-2021-41189

DSpace is an open source turnkey repository application. In version 7.0, any community or collection administrator can escalate their permission up t…

Patch available
Fix from $1,950 2021-10-29
Vitro HIGH 7.5
CVE-2019-6986

SPARQL Injection in VIVO Vitro v1.10.0 allows a remote attacker to execute arbitrary SPARQL via the uri parameter, leading to a regular expression de…

Patch available
Fix from $1,950 2019-01-28
Dspace HIGH 7.5
CVE-2016-10726

The XMLUI feature in DSpace before 3.6, 4.x before 4.5, and 5.x before 5.5 allows directory traversal via the themes/ path in an attack with two or m…

Fix: 3.6 / 4.5+
Fix from $1,950 2018-07-10