Vulnerabilities > Joplin Project > Joplin > 1.8.5

DATE CVE VULNERABILITY TITLE RISK
2024-09-09 CVE-2024-40643 Cross-site Scripting vulnerability in Joplin Project Joplin
Joplin is a free, open source note taking and to-do application.
network
low complexity
joplin-project CWE-79
critical
9.6
2024-06-21 CVE-2023-39517 Cross-site Scripting vulnerability in Joplin Project Joplin
Joplin is a free, open source note taking and to-do application.
network
low complexity
joplin-project CWE-79
5.4
2023-06-30 CVE-2023-37298 Cross-site Scripting vulnerability in Joplin Project Joplin
Joplin before 2.11.5 allows XSS via a USE element in an SVG document.
network
low complexity
joplin-project CWE-79
6.1
2023-06-30 CVE-2023-37299 Cross-site Scripting vulnerability in Joplin Project Joplin
Joplin before 2.11.5 allows XSS via an AREA element of an image map.
network
low complexity
joplin-project CWE-79
6.1
2023-01-31 CVE-2022-45598 Cross-site Scripting vulnerability in Joplin Project Joplin
Cross Site Scripting vulnerability in Joplin Desktop App before v2.9.17 allows attacker to execute arbitrary code via improper santization.
network
low complexity
joplin-project CWE-79
6.1
2021-08-03 CVE-2021-37916 Cross-site Scripting vulnerability in Joplin Project Joplin
Joplin before 2.0.9 allows XSS via button and form in the note body.
network
low complexity
joplin-project CWE-79
6.1