Vulnerabilities > Showdoc

DATE CVE VULNERABILITY TITLE RISK
2022-01-26 CVE-2022-0362 SQL Injection vulnerability in Showdoc
SQL Injection in Packagist showdoc/showdoc prior to 2.10.3.
network
low complexity
showdoc CWE-89
critical
9.8
2022-01-22 CVE-2021-4172 Cross-site Scripting vulnerability in Showdoc
Cross-site Scripting (XSS) - Stored in GitHub repository star7th/showdoc prior to 2.10.2.
network
low complexity
showdoc CWE-79
5.4
2022-01-03 CVE-2022-0079 Information Exposure Through an Error Message vulnerability in Showdoc
showdoc is vulnerable to Generation of Error Message Containing Sensitive Information
network
low complexity
showdoc CWE-209
5.3
2021-12-26 CVE-2021-4168 Cross-Site Request Forgery (CSRF) vulnerability in Showdoc
showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
network
low complexity
showdoc CWE-352
8.8
2021-12-03 CVE-2021-4000 Open Redirect vulnerability in Showdoc
showdoc is vulnerable to URL Redirection to Untrusted Site
network
low complexity
showdoc CWE-601
6.1
2021-12-01 CVE-2021-3989 Open Redirect vulnerability in Showdoc
showdoc is vulnerable to URL Redirection to Untrusted Site
network
low complexity
showdoc CWE-601
6.1
2021-12-01 CVE-2021-3990 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) vulnerability in Showdoc
showdoc is vulnerable to Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
network
low complexity
showdoc CWE-338
6.5
2021-12-01 CVE-2021-3993 Cross-Site Request Forgery (CSRF) vulnerability in Showdoc
showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
network
low complexity
showdoc CWE-352
6.5
2021-12-01 CVE-2021-4017 Cross-Site Request Forgery (CSRF) vulnerability in Showdoc
showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
network
low complexity
showdoc CWE-352
8.8
2021-11-13 CVE-2021-3683 Cross-Site Request Forgery (CSRF) vulnerability in Showdoc
showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
network
low complexity
showdoc CWE-352
6.5