Vulnerabilities > Airbnb

DATE CVE VULNERABILITY TITLE RISK
2022-11-23 CVE-2022-41875 Deserialization of Untrusted Data vulnerability in Airbnb Optica
A remote code execution (RCE) vulnerability in Optica allows unauthenticated attackers to execute arbitrary code via specially crafted JSON payloads.
network
low complexity
airbnb CWE-502
critical
9.8
2018-06-17 CVE-2018-12104 Cross-site Scripting vulnerability in Airbnb Knowledge Repo 0.7.4
Cross-site scripting (XSS) vulnerability in Airbnb Knowledge Repo 0.7.4 allows remote attackers to inject arbitrary web scripts or HTML via the post comments functionality, as demonstrated by the post/posts/new_report.kp URI.
network
airbnb CWE-79
4.3