Vulnerabilities > Dolibarr > Dolibarr ERP CRM > 18.0.4

DATE CVE VULNERABILITY TITLE RISK
2024-11-15 CVE-2021-3991 Authorization Bypass Through User-Controlled Key vulnerability in Dolibarr Erp/Crm
An Improper Authorization vulnerability exists in Dolibarr versions prior to the 'develop' branch.
network
low complexity
dolibarr CWE-639
4.3
2024-04-03 CVE-2024-29477 Unspecified vulnerability in Dolibarr Erp/Crm
Lack of sanitization during Installation Process in Dolibarr ERP CRM up to version 19.0.0 allows an attacker with adjacent access to the network to execute arbitrary code via a specifically crafted input.
low complexity
dolibarr
8.8
2024-01-25 CVE-2024-23817 Cross-site Scripting vulnerability in Dolibarr Erp/Crm 18.0.4
Dolibarr is an enterprise resource planning (ERP) and customer relationship management (CRM) software package.
network
low complexity
dolibarr CWE-79
6.1