Vulnerabilities > Thehive Project

DATE CVE VULNERABILITY TITLE RISK
2019-05-09 CVE-2019-7652 Server-Side Request Forgery (SSRF) vulnerability in Thehive-Project Cortex-Analyzers
TheHive Project UnshortenLink analyzer before 1.1, included in Cortex-Analyzers before 1.15.2, has SSRF.
network
low complexity
thehive-project CWE-918
4.0
2018-12-21 CVE-2018-20226 Unspecified vulnerability in Thehive-Project Cortex
An organization administrator can add a super administrator in THEHIVE PROJECT Cortex before 2.1.3 due to the lack of overriding the Role.toString method.
network
low complexity
thehive-project
6.5