Vulnerabilities > Redhat > Quay > 2.0.0

DATE CVE VULNERABILITY TITLE RISK
2021-03-18 CVE-2019-3867 Unspecified vulnerability in Redhat Quay 2.0.0/3.0.0
A vulnerability was found in the Quay web application.
low complexity
redhat
4.1
2020-08-11 CVE-2020-14313 Unspecified vulnerability in Redhat Quay
An information disclosure vulnerability was found in Red Hat Quay in versions before 3.3.1.
network
low complexity
redhat
4.3
2020-06-22 CVE-2019-3865 Cross-site Scripting vulnerability in Redhat Quay 2.0.0
A vulnerability was found in quay-2, where a stored XSS vulnerability has been found in the super user function of quay.
network
low complexity
redhat CWE-79
6.1
2020-01-21 CVE-2019-3864 Cross-Site Request Forgery (CSRF) vulnerability in Redhat Quay
A vulnerability was discovered in all quay-2 versions before quay-3.0.0, in the Quay web GUI where POST requests include a specific parameter which is used as a CSRF token.
network
low complexity
redhat CWE-352
8.8