Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Peertube HIGH 7.5
CVE-2025-32947

This vulnerability allows any attacker to cause the PeerTube server to stop responding to requests due to an infinite loop in the "inbox" endpoint wh…

Fix: 7.1.1+
Fix from $1,950 2025-04-15
Peertube HIGH 7.5
CVE-2025-32948

The vulnerability allows any attacker to cause the PeerTube server to stop functioning, or in special cases send requests to arbitrary URLs (Blind SS…

Fix: 7.1.1+
Fix from $1,950 2025-04-15
Peertube MEDIUM 6.5
CVE-2025-32949

This vulnerability allows any authenticated user to cause the server to consume very large amounts of disk space when extracting a Zip Bomb. If use…

Fix: 7.1.1+
Fix from $1,600 2025-04-15
Peertube MEDIUM 6.5
CVE-2025-32944

The vulnerability allows any authenticated user to cause the PeerTube server to stop functioning in a persistent manner.  If user import is enabled (…

Fix: 7.1.1+
Fix from $1,600 2025-04-15
Peertube MEDIUM 5.3
CVE-2025-32946

This vulnerability allows any attacker to add playlists to a different user’s channel using the ActivityPub protocol. The vulnerable code sets the ow…

Fix: 7.1.1+
Fix from $1,600 2025-04-15
Peertube MEDIUM 6.5
CVE-2022-0881

Insecure Storage of Sensitive Information in GitHub repository chocobozzz/peertube prior to 4.1.1.

Fix: 4.1.1+
Fix from $1,600 2022-03-09
Peertube MEDIUM 5.4
CVE-2022-0727

Improper Access Control in GitHub repository chocobozzz/peertube prior to 4.1.0.

Fix: 4.1.0+
Fix from $1,600 2022-02-23
Peertube MEDIUM 5.4
CVE-2022-0726

Missing Authorization in GitHub repository chocobozzz/peertube prior to 4.1.0.

Fix: 4.1.0+
Fix from $1,600 2022-02-23
Peertube MEDIUM 5.3
CVE-2022-0508

Server-Side Request Forgery (SSRF) in GitHub repository chocobozzz/peertube prior to f33e515991a32885622b217bf2ed1d1b0d9d6832

Fix: 2021-12-13+
Fix from $1,600 2022-02-08
Peertube HIGH 7.5
CVE-2022-0133

peertube is vulnerable to Improper Access Control

Fix: 2022-01-06+
Fix from $1,950 2022-01-10
Peertube HIGH 7.5
CVE-2022-0132

peertube is vulnerable to Server-Side Request Forgery (SSRF)

Patch available
Fix from $1,950 2022-01-10
Peertube MEDIUM 6.1
CVE-2021-3780

peertube is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Fix: 3.4.0+
Fix from $1,600 2021-09-15
Framadate CRITICAL 9.8
CVE-2017-1000039

Framadate version 1.0 is vulnerable to Formula Injection in the CSV Export resulting possible Information Disclosure and Code Execution

Mitigation only
Fix from $2,300 2017-07-17