Vulnerability index

Browse CVEs

17 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Octoprint MEDIUM 5.9
CVE-2026-23892

OctoPrint provides a web interface for controlling consumer 3D printers. OctoPrint versions up to and including 1.11.5 are affected by a (theoretical…

Fix: 1.11.6+
Fix from $1,600 2026-01-27
Octoprint HIGH 8.8
CVE-2025-58180EPSS 21%

OctoPrint provides a web interface for controlling consumer 3D printers. OctoPrint versions up until and including 1.11.2 contain a vulnerability tha…

Fix: 1.11.3+
Fix from $1,950 2025-09-09
Octoprint MEDIUM 6.5
CVE-2025-48879

OctoPrint versions up until and including 1.11.1 contain a vulnerability that allows any unauthenticated attacker to send a manipulated broken multip…

Fix: 1.11.2+
Fix from $1,600 2025-06-10
Octoprint MEDIUM 6.5
CVE-2024-51493

OctoPrint provides a web interface for controlling consumer 3D printers. OctoPrint versions up until and including 1.10.2 contain a vulnerability tha…

Fix: 1.10.3+
Fix from $1,600 2024-11-05
Octoprint MEDIUM 6.1
CVE-2024-49377

OctoPrint provides a web interface for controlling consumer 3D printers. OctoPrint versions up until and including 1.10.2 contain reflected XSS vulne…

Fix: 1.10.3+
Fix from $1,600 2024-11-05
Octoprint CRITICAL 9.4
CVE-2024-32977

OctoPrint provides a web interface for controlling consumer 3D printers. OctoPrint versions up until and including 1.10.0 contain a vulnerability tha…

Fix: 1.10.1+
Fix from $2,300 2024-05-14
Octoprint MEDIUM 6.5
CVE-2023-41047

OctoPrint is a web interface for 3D printers. OctoPrint versions up until and including 1.9.2 contain a vulnerability that allows malicious admins to…

Fix: 1.9.3+
Fix from $1,600 2023-10-09
Octoprint MEDIUM 6.0
CVE-2022-3607

Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository octoprint/octoprint prior to 1.8.3.

Fix: 1.8.3+
Fix from $1,600 2022-10-19
Octoprint HIGH 8.8
CVE-2022-3068

Improper Privilege Management in GitHub repository octoprint/octoprint prior to 1.8.3.

Fix: 1.8.3+
Fix from $1,950 2022-09-21
Octoprint MEDIUM 5.4
CVE-2022-2872

Unrestricted Upload of File with Dangerous Type in GitHub repository octoprint/octoprint prior to 1.8.3.

Fix: 1.8.3+
Fix from $1,600 2022-09-21
Octoprint HIGH 7.8
CVE-2022-2930

Unverified Password Change in GitHub repository octoprint/octoprint prior to 1.8.3.

Fix: 1.8.3+
Fix from $1,950 2022-08-22
Octoprint HIGH 7.5
CVE-2022-2822

An attacker can freely brute force username and password and can takeover any account. An attacker could easily guess user passwords and gain access …

Fix: 1.9.0+
Fix from $1,950 2022-08-15
Octoprint HIGH 7.5
CVE-2022-1430

Cross-site Scripting (XSS) - DOM in GitHub repository octoprint/octoprint prior to 1.8.0.

Fix: 1.8.0+
Fix from $1,950 2022-05-18
Octoprint MEDIUM 6.4
CVE-2022-1432

Cross-site Scripting (XSS) - Generic in GitHub repository octoprint/octoprint prior to 1.8.0.

Fix: 1.8.0+
Fix from $1,600 2022-05-18
Octoprint MEDIUM 6.5
CVE-2021-32560

The Logging subsystem in OctoPrint before 1.6.0 has incorrect access control because it attempts to manage files that are not *.log files.

Fix: 1.6.0+
Fix from $1,600 2021-05-11
Octoprint MEDIUM 6.1
CVE-2021-32561

OctoPrint before 1.6.0 allows XSS because API error messages include the values of input parameters.

Fix: 1.6.0+
Fix from $1,600 2021-05-11
Octoprint CRITICAL 9.1
CVE-2018-16710

OctoPrint through 1.3.9 allows remote attackers to obtain sensitive information or cause a denial of service via HTTP requests on port 8081. NOTE: th…

Fix: after 1.3.9
Fix from $2,300 2018-09-07