Vulnerabilities > Thinkst > High

DATE CVE VULNERABILITY TITLE RISK
2024-10-14 CVE-2024-48911 Incorrect Authorization vulnerability in Thinkst Opencanary
OpenCanary, a multi-protocol network honeypot, directly executed commands taken from its config file.
local
low complexity
thinkst CWE-863
7.8
2019-03-14 CVE-2019-9768 Permissions, Privileges, and Access Controls vulnerability in Thinkst Canarytokens 20190301
Thinkst Canarytokens through commit hash 4e89ee0 (2019-03-01) relies on limited variation in size, metadata, and timestamp, which makes it easier for attackers to estimate whether a Word document contains a token.
network
low complexity
thinkst CWE-264
7.5