Vulnerabilities > Charm

DATE CVE VULNERABILITY TITLE RISK
2023-10-04 CVE-2023-43809 Improper Authentication vulnerability in Charm Soft Serve
Soft Serve is a self-hostable Git server for the command line.
network
low complexity
charm CWE-287
7.5
2022-05-07 CVE-2022-29180 Server-Side Request Forgery (SSRF) vulnerability in Charm
A vulnerability in which attackers could forge HTTP requests to manipulate the `charm` data directory to access or delete anything on the server.
network
low complexity
charm CWE-918
critical
9.8