Copilot
23 exploits
Active since Feb 2025
stellar-xdr <25.0.1 - Memory Corruption
CVSS 4.0
Pimcore <=11.5.14.1/12.3.2 - SQL Injection
CVSS 4.9
InvoicePlane 1.7.0 - Stored XSS
CVSS 5.7
InvoicePlane 1.7.0 - Stored XSS
CVSS 5.7
InvoicePlane 1.7.0 - Stored XSS
CVSS 5.7
InvoicePlane 1.7.0 - Stored XSS
CVSS 5.7
InvoicePlane 1.7.0 - RCE via LFI & Log Poisoning
CVSS 9.1
InvoicePlane 1.7.0 - Stored XSS
CVSS 4.8
InvoicePlane 1.7.0 - Stored XSS
CVSS 4.8
InvoicePlane 1.7.0 - Stored XSS
CVSS 4.8
InvoicePlane <1.7.1 - Stored XSS
CVSS 5.4
InvoicePlane 1.7.1 - Stored XSS
CVSS 4.4
Pypi Mitmproxy < 11.1.2 - Remote Code Execution
Langroid <0.53.15 - Code Injection
CVSS 9.8
Langroid <0.53.15 - Code Injection
CVSS 9.8
kotaemon <0.10.6 - Path Traversal
CVSS 6.5
Lara Translate MCP Server <0.0.11 - Command Injection
CVSS 7.5
Gitpod <main-gha.33628 - CSRF
CVSS 6.5
SillyTavern <1.13.4 - SSRF
CVSS 9.6
Koa < 3.0.3 - Open Redirect
CVSS 4.3
NPM Tinacms < 3.1.1 - Code Injection
Rustfs < 1.0.0-alpha.78 - Improper Exception Handling
CVSS 4.0
Navigatum < 2026-02-03 - Path Traversal
CVSS 7.5