Vulnerabilities > Deluge Torrent > Deluge > 1.3.14

DATE CVE VULNERABILITY TITLE RISK
2022-08-26 CVE-2021-3427 Cross-site Scripting vulnerability in Deluge-Torrent Deluge
The Deluge Web-UI is vulnerable to XSS through a crafted torrent file.
network
low complexity
deluge-torrent CWE-79
6.1
2017-05-17 CVE-2017-9031 Path Traversal vulnerability in Deluge-Torrent Deluge 1.3.14
The WebUI component in Deluge before 1.3.15 contains a directory traversal vulnerability involving a request in which the name of the render file is not associated with any template file.
network
low complexity
deluge-torrent CWE-22
7.5