Collate
8 exploits
Active since Mar 2024
OpenMetaData - SpEL Injection in PUT /api/v1/policies
CVSS 9.4
OpenMetadata < 1.2.4 - Authenticated Remote Code Execution via SpEL Expression Injection in AlertUtil
CVSS 8.8
OpenMetadata < 1.2.4 - Remote Code Execution via SpEL Expression Injection in Event Subscription
CVSS 8.8
OpenMetadata <=1.4.1 - SQL Injection via WorkflowDAO listCount Parameters
CVSS 7.1
OpenMetadata <=1.4.4 - SQL Injection
CVSS 7.1
OpenMetadata <=1.4.4 - SQL Injection
CVSS 7.1
OpenMetadata <=1.4.4 - SQL Injection
CVSS 6.5
OpenMetadata <=1.4.4 - SQL Injection
CVSS 6.5