Vulnerabilities > Joplin Project > Joplin > 2.11.3

DATE CVE VULNERABILITY TITLE RISK
2024-06-21 CVE-2023-39517 Cross-site Scripting vulnerability in Joplin Project Joplin
Joplin is a free, open source note taking and to-do application.
network
low complexity
joplin-project CWE-79
5.4
2024-06-21 CVE-2023-45673 Code Injection vulnerability in Joplin Project Joplin
Joplin is a free, open source note taking and to-do application.
network
low complexity
joplin-project CWE-94
critical
9.0
2023-06-30 CVE-2023-37298 Cross-site Scripting vulnerability in Joplin Project Joplin
Joplin before 2.11.5 allows XSS via a USE element in an SVG document.
network
low complexity
joplin-project CWE-79
6.1
2023-06-30 CVE-2023-37299 Cross-site Scripting vulnerability in Joplin Project Joplin
Joplin before 2.11.5 allows XSS via an AREA element of an image map.
network
low complexity
joplin-project CWE-79
6.1