Vulnerabilities > Answer

DATE CVE VULNERABILITY TITLE RISK
2023-09-07 CVE-2023-4815 Missing Authentication for Critical Function vulnerability in Answer
Missing Authentication for Critical Function in GitHub repository answerdev/answer prior to v1.1.3.
network
low complexity
answer CWE-306
8.8
2023-08-03 CVE-2023-4124 Missing Authorization vulnerability in Answer
Missing Authorization in GitHub repository answerdev/answer prior to v1.1.1.
network
low complexity
answer CWE-862
6.5
2023-08-03 CVE-2023-4125 Weak Password Requirements vulnerability in Answer
Weak Password Requirements in GitHub repository answerdev/answer prior to v1.1.0.
network
low complexity
answer CWE-521
8.8
2023-08-03 CVE-2023-4126 Insufficient Session Expiration vulnerability in Answer
Insufficient Session Expiration in GitHub repository answerdev/answer prior to v1.1.0.
network
low complexity
answer CWE-613
8.8
2023-08-03 CVE-2023-4127 Race Condition within a Thread vulnerability in Answer
Race Condition within a Thread in GitHub repository answerdev/answer prior to v1.1.1.
network
high complexity
answer CWE-366
5.9
2023-05-09 CVE-2023-2590 Missing Authorization vulnerability in Answer
Missing Authorization in GitHub repository answerdev/answer prior to 1.0.9.
network
low complexity
answer CWE-862
3.5
2023-04-11 CVE-2023-1976 Password Aging with Long Expiration vulnerability in Answer
Password Aging with Long Expiration in GitHub repository answerdev/answer prior to 1.0.6.
network
low complexity
answer CWE-263
8.8
2023-03-21 CVE-2023-1535 Cross-site Scripting vulnerability in Answer
Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.7.
network
low complexity
answer CWE-79
5.4
2023-03-21 CVE-2023-1536 Cross-site Scripting vulnerability in Answer
Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.7.
network
low complexity
answer CWE-79
5.4
2023-03-21 CVE-2023-1537 Authentication Bypass by Capture-replay vulnerability in Answer
Authentication Bypass by Capture-replay in GitHub repository answerdev/answer prior to 1.0.6.
network
low complexity
answer CWE-294
critical
9.8