Vulnerabilities > Thinkst

DATE CVE VULNERABILITY TITLE RISK
2024-10-14 CVE-2024-48911 Incorrect Authorization vulnerability in Thinkst Opencanary
OpenCanary, a multi-protocol network honeypot, directly executed commands taken from its config file.
local
low complexity
thinkst CWE-863
7.8
2023-01-06 CVE-2023-22475 Cross-site Scripting vulnerability in Thinkst Canarytokens 20190301/20220701
Canarytokens is an open source tool which helps track activity and actions on your network.
network
low complexity
thinkst CWE-79
6.1
2022-07-01 CVE-2022-31113 Cross-site Scripting vulnerability in Thinkst Canarytokens 20190301
Canarytokens is an open source tool which helps track activity and actions on your network.
network
low complexity
thinkst CWE-79
6.1
2019-03-14 CVE-2019-9768 Permissions, Privileges, and Access Controls vulnerability in Thinkst Canarytokens 20190301
Thinkst Canarytokens through commit hash 4e89ee0 (2019-03-01) relies on limited variation in size, metadata, and timestamp, which makes it easier for attackers to estimate whether a Word document contains a token.
network
low complexity
thinkst CWE-264
7.5