Vulnerabilities > Docebo > Docebo > 4.0.5

DATE CVE VULNERABILITY TITLE RISK
2022-06-23 CVE-2022-31361 SQL Injection vulnerability in Docebo 4.0.5
Docebo Community Edition v4.0.5 and below was discovered to contain a SQL injection vulnerability.
network
low complexity
docebo CWE-89
critical
9.8
2022-06-23 CVE-2022-31362 Unrestricted Upload of File with Dangerous Type vulnerability in Docebo 4.0.5
Docebo Community Edition v4.0.5 and below was discovered to contain an arbitrary file upload vulnerability.
network
low complexity
docebo CWE-434
8.8