Vulnerabilities > Open Falcon

DATE CVE VULNERABILITY TITLE RISK
2023-08-11 CVE-2021-27523 Unspecified vulnerability in Open-Falcon Dashboard 0.2.0
An issue was discovered in open-falcon dashboard version 0.2.0, allows remote attackers to gain, modify, and delete sensitive information via crafted POST request to register interface.
network
low complexity
open-falcon
critical
9.8
2022-03-27 CVE-2022-26245 SQL Injection vulnerability in Open-Falcon Falcon-Plus 0.3
Falcon-plus v0.3 was discovered to contain a SQL injection vulnerability via the parameter grpName in /config/service/host.go.
network
low complexity
open-falcon CWE-89
critical
9.8