Vulnerabilities > Inveniosoftware

DATE CVE VULNERABILITY TITLE RISK
2021-12-06 CVE-2021-43781 Incorrect Authorization vulnerability in Inveniosoftware Invenio-Drafts-Resources
Invenio-Drafts-Resources is a submission/deposit module for Invenio, a software framework for research data management.
network
low complexity
inveniosoftware CWE-863
4.3
2019-07-29 CVE-2019-1020006 Injection vulnerability in Inveniosoftware Invenio-App
invenio-app before 1.1.1 allows host header injection.
network
low complexity
inveniosoftware CWE-74
6.1
2019-07-29 CVE-2019-1020005 Cross-site Scripting vulnerability in Inveniosoftware Invenio-Communities 1.0.0
invenio-communities before 1.0.0a20 allows XSS.
network
low complexity
inveniosoftware CWE-79
5.4
2019-07-29 CVE-2019-1020003 Cross-site Scripting vulnerability in Inveniosoftware Invenio-Records
invenio-records before 1.2.2 allows XSS.
network
low complexity
inveniosoftware CWE-79
5.4
2019-07-29 CVE-2019-1020019 Cross-site Scripting vulnerability in Inveniosoftware Invenio-Previewer 0.1.0/1.0.0
invenio-previewer before 1.0.0a12 allows XSS.
network
low complexity
inveniosoftware CWE-79
6.1