Showing 2 vulnerabilities on this page for taiga_front

Signals CISA KEV Ransomware Nuclei
taigaio vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

A CSV injection vulnerability in Taiga v6.8.1 allows attackers to execute arbitrary code via uploading a crafted CSV file.

CWE-1236Nov 26, 2024
CVSS8.8v3.1EPSS0.675%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

A Client-Side Template Injection (CSTI) vulnerability in the component /project/new/scrum of Taiga v 8.6.1 allows remote attackers to execute arbitrary code by injecting a malicious payload within the new project details.

CWE-94Nov 25, 2024
CVSS8.0v3.1EPSS0.708%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX