Vulnerabilities > GIN VUE Admin Project > GIN VUE Admin > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-10-24 CVE-2022-39305 Unrestricted Upload of File with Dangerous Type vulnerability in Gin-Vue-Admin Project Gin-Vue-Admin
Gin-vue-admin is a backstage management system based on vue and gin, which separates the front and rear of the full stack.
network
low complexity
gin-vue-admin-project CWE-434
critical
9.8
2022-10-17 CVE-2022-32176 Unspecified vulnerability in Gin-Vue-Admin Project Gin-Vue-Admin
In "Gin-Vue-Admin", versions v2.5.1 through v2.5.3b are vulnerable to Unrestricted File Upload that leads to execution of javascript code, through the "Compress Upload" functionality to the Media Library.
network
low complexity
gin-vue-admin-project
critical
9.0
2022-10-14 CVE-2022-32177 Unrestricted Upload of File with Dangerous Type vulnerability in Gin-Vue-Admin Project Gin-Vue-Admin
In "Gin-Vue-Admin", versions v2.5.1 through v2.5.3beta are vulnerable to Unrestricted File Upload that leads to execution of javascript code, through the 'Normal Upload' functionality to the Media Library.
network
low complexity
gin-vue-admin-project CWE-434
critical
9.0
2021-11-24 CVE-2021-44219 Unspecified vulnerability in Gin-Vue-Admin Project Gin-Vue-Admin
Gin-Vue-Admin before 2.4.6 mishandles a SQL database.
network
low complexity
gin-vue-admin-project
critical
9.8