Vulnerabilities > Onedev Project > Onedev > High

DATE CVE VULNERABILITY TITLE RISK
2023-02-08 CVE-2023-24828 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) vulnerability in Onedev Project Onedev
Onedev is a self-hosted Git Server with CI/CD and Kanban.
network
low complexity
onedev-project CWE-338
8.8
2022-09-13 CVE-2022-39208 Files or Directories Accessible to External Parties vulnerability in Onedev Project Onedev
Onedev is an open source, self-hosted Git Server with CI/CD and Kanban.
network
low complexity
onedev-project CWE-552
7.5
2021-01-15 CVE-2021-21248 Code Injection vulnerability in Onedev Project Onedev
OneDev is an all-in-one devops platform.
network
low complexity
onedev-project CWE-94
8.8
2021-01-15 CVE-2021-21245 Unrestricted Upload of File with Dangerous Type vulnerability in Onedev Project Onedev
OneDev is an all-in-one devops platform.
network
low complexity
onedev-project CWE-434
7.5
2021-01-15 CVE-2021-21242 Deserialization of Untrusted Data vulnerability in Onedev Project Onedev
OneDev is an all-in-one devops platform.
network
low complexity
onedev-project CWE-502
7.5
2021-01-15 CVE-2021-21243 Deserialization of Untrusted Data vulnerability in Onedev Project Onedev
OneDev is an all-in-one devops platform.
network
low complexity
onedev-project CWE-502
7.5