Vulnerabilities > Open Xchange > Open Xchange Appsuite Backend > High

DATE CVE VULNERABILITY TITLE RISK
2023-08-02 CVE-2023-26451 Use of Insufficiently Random Values vulnerability in Open-Xchange Appsuite Backend
Functions with insufficient randomness were used to generate authorization tokens of the integrated oAuth Authorization Service.
network
low complexity
open-xchange CWE-330
7.5
2023-06-20 CVE-2023-26436 Deserialization of Untrusted Data vulnerability in Open-Xchange Appsuite Backend
Attackers with access to the "documentconverterws" API were able to inject serialized Java objects, that were not properly checked during deserialization.
low complexity
open-xchange CWE-502
8.8