Vulnerabilities > Humhub > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-06-09 | CVE-2017-20028 | Improper Privilege Management vulnerability in Humhub 0.20.1/1.0.0 A vulnerability was found in HumHub 0.20.1/1.0.0-beta.3. | 7.5 |
2015-01-06 | CVE-2014-9528 | SQL Injection vulnerability in Humhub 0.10.0 SQL injection vulnerability in the actionIndex function in protected/modules_core/notification/controllers/ListController.php in HumHub 0.10.0-rc.1 and earlier allows remote authenticated users to execute arbitrary SQL commands via the from parameter to index.php. | 7.5 |