Vulnerabilities > Answer

DATE CVE VULNERABILITY TITLE RISK
2023-03-21 CVE-2023-1536 Cross-site Scripting vulnerability in Answer
Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.7.
network
low complexity
answer CWE-79
5.4
2023-03-21 CVE-2023-1537 Authentication Bypass by Capture-replay vulnerability in Answer
Authentication Bypass by Capture-replay in GitHub repository answerdev/answer prior to 1.0.6.
network
low complexity
answer CWE-294
critical
9.8
2023-03-21 CVE-2023-1538 Information Exposure Through Discrepancy vulnerability in Answer
Observable Timing Discrepancy in GitHub repository answerdev/answer prior to 1.0.6.
network
low complexity
answer CWE-203
5.3
2023-03-21 CVE-2023-1539 Improper Restriction of Excessive Authentication Attempts vulnerability in Answer
Improper Restriction of Excessive Authentication Attempts in GitHub repository answerdev/answer prior to 1.0.6.
network
low complexity
answer CWE-307
5.3
2023-03-21 CVE-2023-1540 Information Exposure Through Discrepancy vulnerability in Answer
Observable Response Discrepancy in GitHub repository answerdev/answer prior to 1.0.6.
network
low complexity
answer CWE-203
5.3
2023-03-21 CVE-2023-1541 Unspecified vulnerability in Answer
Business Logic Errors in GitHub repository answerdev/answer prior to 1.0.6.
network
low complexity
answer
3.8
2023-03-21 CVE-2023-1542 Unspecified vulnerability in Answer
Business Logic Errors in GitHub repository answerdev/answer prior to 1.0.6.
network
low complexity
answer
5.4
2023-03-21 CVE-2023-1543 Insufficient Session Expiration vulnerability in Answer
Insufficient Session Expiration in GitHub repository answerdev/answer prior to 1.0.6.
network
low complexity
answer CWE-613
8.8
2023-03-07 CVE-2023-1237 Cross-site Scripting vulnerability in Answer
Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.
network
low complexity
answer CWE-79
5.4
2023-03-07 CVE-2023-1238 Cross-site Scripting vulnerability in Answer
Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.
network
low complexity
answer CWE-79
5.4