Vulnerabilities > Slack

DATE CVE VULNERABILITY TITLE RISK
2020-04-02 CVE-2020-11498 Path Traversal vulnerability in Slack Nebula 1.0.0/1.1.0
Slack Nebula through 1.1.0 contains a relative path vulnerability that allows a low-privileged attacker to execute code in the context of the root user via tun_darwin.go or tun_windows.go.
network
low complexity
slack CWE-22
8.8
2019-11-12 CVE-2019-14366 Information Exposure vulnerability in Slack WP Slacksync
WP SlackSync plugin through 1.8.5 for WordPress leaks a Slack Access Token in source code.
network
low complexity
slack CWE-200
7.5