Vulnerabilities > Calibre WEB Project > Calibre WEB > 0.6.17

DATE CVE VULNERABILITY TITLE RISK
2023-04-15 CVE-2023-2106 Weak Password Requirements vulnerability in Calibre-Web Project Calibre-Web
Weak Password Requirements in GitHub repository janeczku/calibre-web prior to 0.6.20.
network
low complexity
calibre-web-project CWE-521
critical
9.8
2023-04-15 CVE-2022-2525 Improper Restriction of Excessive Authentication Attempts vulnerability in Calibre-Web Project Calibre-Web
Improper Restriction of Excessive Authentication Attempts in GitHub repository janeczku/calibre-web prior to 0.6.20.
network
low complexity
calibre-web-project CWE-307
critical
9.8
2022-04-04 CVE-2022-0990 Server-Side Request Forgery (SSRF) vulnerability in Calibre-Web Project Calibre-Web
Server-Side Request Forgery (SSRF) in GitHub repository janeczku/calibre-web prior to 0.6.18.
network
low complexity
calibre-web-project CWE-918
6.4
2022-04-04 CVE-2022-0939 Server-Side Request Forgery (SSRF) vulnerability in Calibre-Web Project Calibre-Web
Server-Side Request Forgery (SSRF) in GitHub repository janeczku/calibre-web prior to 0.6.18.
network
low complexity
calibre-web-project CWE-918
7.5