Vulnerabilities > Anyplace Project

DATE CVE VULNERABILITY TITLE RISK
2018-12-20 CVE-2018-1000829 XXE vulnerability in Anyplace Project Anyplace
Anyplace version before commit 80359b4 contains a XML External Entity (XXE) vulnerability in Man in the middle on map API call that can result in Disclosure of confidential data, denial of service, SSRF, port scanning.
network
high complexity
anyplace-project CWE-611
critical
9.0