Vulnerabilities > Firefly III > High

DATE CVE VULNERABILITY TITLE RISK
2021-10-27 CVE-2021-3901 Unspecified vulnerability in Firefly-Iii Firefly III
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
network
low complexity
firefly-iii
8.8
2021-10-19 CVE-2021-3846 Unrestricted Upload of File with Dangerous Type vulnerability in Firefly-Iii Firefly III
firefly-iii is vulnerable to Unrestricted Upload of File with Dangerous Type
network
low complexity
firefly-iii CWE-434
8.8
2021-09-27 CVE-2021-3819 Cross-Site Request Forgery (CSRF) vulnerability in Firefly-Iii Firefly III
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
network
low complexity
firefly-iii CWE-352
8.8
2021-07-25 CVE-2021-3663 Improper Restriction of Excessive Authentication Attempts vulnerability in Firefly-Iii Firefly III
firefly-iii is vulnerable to Improper Restriction of Excessive Authentication Attempts
network
low complexity
firefly-iii CWE-307
7.5