Vulnerabilities > Galaxyproject > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-09-22 CVE-2023-42812 Unspecified vulnerability in Galaxyproject Galaxy
Galaxy is an open-source platform for FAIR data analysis.
network
low complexity
galaxyproject
4.3
2018-06-26 CVE-2018-1000516 Cross-site Scripting vulnerability in Galaxyproject Galaxy 14.10
The Galaxy Project Galaxy version v14.10 contains a CWE-79: Improper Neutralization of Input During Web Page Generation vulnerability in Many templates used in the Galaxy server did not properly sanitize user's input, which would allow for cross-site scripting (XSS) attacks.
network
low complexity
galaxyproject CWE-79
6.1