Vulnerabilities > Bludit > Bludit > 3.13.0

DATE CVE VULNERABILITY TITLE RISK
2022-05-11 CVE-2020-19228 Unrestricted Upload of File with Dangerous Type vulnerability in Bludit 3.13.0
An issue was found in bludit v3.13.0, unsafe implementation of the backup plugin allows attackers to upload arbitrary files.
network
low complexity
bludit CWE-434
critical
9.0
2022-01-06 CVE-2021-45744 Cross-site Scripting vulnerability in Bludit
A Stored Cross Site Scripting (XSS) vulnerability exists in bludit 3.13.1 via the TAGS section in login panel.
network
bludit CWE-79
3.5
2022-01-06 CVE-2021-45745 Cross-site Scripting vulnerability in Bludit
A Stored Cross Site Scripting (XSS) vulnerability exists in Bludit 3.13.1 via the About Plugin in login panel.
network
bludit CWE-79
3.5
2021-09-01 CVE-2020-20495 Unspecified vulnerability in Bludit 3.13.0
bludit v3.13.0 contains an arbitrary file deletion vulnerability in the backup plugin via the `deleteBackup' parameter.
network
bludit
5.8