Vulnerabilities > Inveniosoftware

DATE CVE VULNERABILITY TITLE RISK
2021-12-06 CVE-2021-43781 Incorrect Authorization vulnerability in Inveniosoftware Invenio-Drafts-Resources
Invenio-Drafts-Resources is a submission/deposit module for Invenio, a software framework for research data management.
network
low complexity
inveniosoftware CWE-863
4.0
2019-07-29 CVE-2019-1020006 Injection vulnerability in Inveniosoftware Invenio-App
invenio-app before 1.1.1 allows host header injection.
5.8
2019-07-29 CVE-2019-1020005 Cross-site Scripting vulnerability in Inveniosoftware Invenio-Communities 1.0.0
invenio-communities before 1.0.0a20 allows XSS.
3.5
2019-07-29 CVE-2019-1020003 Cross-site Scripting vulnerability in Inveniosoftware Invenio-Records
invenio-records before 1.2.2 allows XSS.
3.5
2019-07-29 CVE-2019-1020019 Cross-site Scripting vulnerability in Inveniosoftware Invenio-Previewer 0.1.0/1.0.0
invenio-previewer before 1.0.0a12 allows XSS.
4.3