Vulnerabilities > Jorani > High

DATE CVE VULNERABILITY TITLE RISK
2023-10-03 CVE-2023-2681 SQL Injection vulnerability in Jorani 1.0.0
An SQL Injection vulnerability has been found on Jorani version 1.0.0.
network
low complexity
jorani CWE-89
8.8
2022-06-28 CVE-2022-34134 Cross-Site Request Forgery (CSRF) vulnerability in Jorani 1.0.0
Benjamin BALET Jorani v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /application/controllers/Users.php.
network
low complexity
jorani CWE-352
8.8