Vulnerabilities > Elabftw > Elabftw > 1.7.8

DATE CVE VULNERABILITY TITLE RISK
2022-05-31 CVE-2022-31007 Unspecified vulnerability in Elabftw
eLabFTW is an electronic lab notebook manager for research teams.
network
low complexity
elabftw
6.5
2021-12-16 CVE-2021-43833 Improper Authentication vulnerability in Elabftw
eLabFTW is an electronic lab notebook manager for research teams.
network
low complexity
elabftw CWE-287
6.5
2021-12-16 CVE-2021-43834 Improper Authentication vulnerability in Elabftw
eLabFTW is an electronic lab notebook manager for research teams.
network
low complexity
elabftw CWE-287
6.5
2021-10-22 CVE-2021-41171 Improper Restriction of Excessive Authentication Attempts vulnerability in Elabftw
eLabFTW is an open source electronic lab notebook manager for research teams.
network
low complexity
elabftw CWE-307
4.0
2021-06-21 CVE-2021-32698 Server-Side Request Forgery (SSRF) vulnerability in Elabftw
eLabFTW is an open source electronic lab notebook for research labs.
network
low complexity
elabftw CWE-918
4.0
2018-01-03 CVE-2017-1000478 Cross-site Scripting vulnerability in Elabftw 1.7.8
ELabftw version 1.7.8 is vulnerable to stored cross-site scripting in the experiment infos component resulting in arbitrary execution of JavaScript and denial of service.
network
elabftw CWE-79
3.5