Vulnerabilities > Onekeyadmin > High

DATE CVE VULNERABILITY TITLE RISK
2023-03-09 CVE-2023-26948 Files or Directories Accessible to External Parties vulnerability in Onekeyadmin 1.3.9
onekeyadmin v1.3.9 was discovered to contain an arbitrary file read vulnerability via the component /admin1/file/download.
network
low complexity
onekeyadmin CWE-552
7.5
2023-03-08 CVE-2023-26956 Files or Directories Accessible to External Parties vulnerability in Onekeyadmin 1.3.9
onekeyadmin v1.3.9 was discovered to contain an arbitrary file read vulnerability via the component /admin1/curd/code.
network
low complexity
onekeyadmin CWE-552
7.5