Vulnerabilities > Koel

DATE CVE VULNERABILITY TITLE RISK
2021-05-24 CVE-2021-33563 Use of Password Hash With Insufficient Computational Effort vulnerability in Koel
Koel before 5.1.4 lacks login throttling, lacks a password strength policy, and shows whether a failed login attempt had a valid username.
network
low complexity
koel CWE-916
7.5