Vulnerabilities > Hestiacp > High

DATE CVE VULNERABILITY TITLE RISK
2023-10-29 CVE-2023-5839 Privilege Chaining vulnerability in Hestiacp Control Panel
Privilege Chaining in GitHub repository hestiacp/hestiacp prior to 1.8.9.
local
low complexity
hestiacp CWE-268
7.8
2022-08-05 CVE-2022-2636 Code Injection vulnerability in Hestiacp Control Panel
Improper Control of Generation of Code ('Code Injection') in GitHub repository hestiacp/hestiacp prior to 1.6.6.
network
low complexity
hestiacp CWE-94
8.8
2022-04-28 CVE-2022-1509 Command Injection vulnerability in Hestiacp Control Panel
Command Injection Vulnerability in GitHub repository hestiacp/hestiacp prior to 1.5.12.
network
low complexity
hestiacp CWE-77
8.8
2021-09-15 CVE-2021-3797 Unspecified vulnerability in Hestiacp Control Panel
hestiacp is vulnerable to Use of Wrong Operator in String Comparison
network
low complexity
hestiacp
7.5