Vulnerabilities > Jetbrains > Ktor > 2.0.2

DATE CVE VULNERABILITY TITLE RISK
2024-10-17 CVE-2024-49580 Unspecified vulnerability in Jetbrains Ktor
In JetBrains Ktor before 2.3.13 improper caching in HttpCache Plugin could lead to response information disclosure
network
low complexity
jetbrains
5.3
2023-10-09 CVE-2023-45612 XXE vulnerability in Jetbrains Ktor
In JetBrains Ktor before 2.3.5 default configuration of ContentNegotiation with XML format was vulnerable to XXE
network
low complexity
jetbrains CWE-611
critical
9.8
2023-10-09 CVE-2023-45613 Unspecified vulnerability in Jetbrains Ktor
In JetBrains Ktor before 2.3.5 server certificates were not verified
network
low complexity
jetbrains
critical
9.1
2023-06-01 CVE-2023-34339 Unspecified vulnerability in Jetbrains Ktor
In JetBrains Ktor before 2.3.1 headers containing authentication data could be added to the exception's message
local
low complexity
jetbrains
3.3
2023-04-24 CVE-2022-48476 Path Traversal vulnerability in Jetbrains Ktor
In JetBrains Ktor before 2.3.0 path traversal in the `resolveResource` method was possible
network
low complexity
jetbrains CWE-22
7.5
2022-08-12 CVE-2022-38179 Incorrect Comparison vulnerability in Jetbrains Ktor
JetBrains Ktor before 2.1.0 was vulnerable to the Reflect File Download attack
network
low complexity
jetbrains CWE-697
6.1
2022-08-12 CVE-2022-38180 Improper Authentication vulnerability in Jetbrains Ktor
In JetBrains Ktor before 2.1.0 the wrong authentication provider could be selected in some cases
network
low complexity
jetbrains CWE-287
6.5