amercader
7 exploits
Active since Feb 2023
CKAN < 2.8.12 - Use of Insufficiently Random Values in Default Secret Key
CVSS 8.6
CKAN 2.7.0-2.10.4 - Cross-Site Scripting in Datatables View Plugin
CVSS 6.8
CKAN < 2.8.12 - Use of Insufficiently Random Values in Default Secret Key
CVSS 8.6
CKAN <2.9.10-2.10.3 - Memory Corruption
CVSS 4.5
CKAN 2.0-2.10.4 - Sensitive Information Exposure via Solr Error Message
CVSS 5.3
CKAN 2.7.0-2.10.4 - Cross-Site Scripting in Datatables View Plugin
CVSS 6.8
CKAN < 2.10.7 and 2.11.0-2.11.2 - Authenticated Stored Cross-Site Scripting via File Upload
CVSS 7.3