Vulnerabilities > Trudesk Project

DATE CVE VULNERABILITY TITLE RISK
2022-05-31 CVE-2022-1931 Improper Synchronization vulnerability in Trudesk Project Trudesk
Incorrect Synchronization in GitHub repository polonel/trudesk prior to 1.2.3.
network
low complexity
trudesk-project CWE-662
8.1
2022-05-21 CVE-2022-1752 Unrestricted Upload of File with Dangerous Type vulnerability in Trudesk Project Trudesk
Unrestricted Upload of File with Dangerous Type in GitHub repository polonel/trudesk prior to 1.2.2.
network
low complexity
trudesk-project CWE-434
8.0
2022-05-20 CVE-2022-1775 Weak Password Requirements vulnerability in Trudesk Project Trudesk
Weak Password Requirements in GitHub repository polonel/trudesk prior to 1.2.2.
network
low complexity
trudesk-project CWE-521
critical
9.8
2022-05-20 CVE-2022-1803 Improper Restriction of Rendered UI Layers or Frames vulnerability in Trudesk Project Trudesk
Improper Restriction of Rendered UI Layers or Frames in GitHub repository polonel/trudesk prior to 1.2.2.
network
low complexity
trudesk-project CWE-1021
6.9
2022-05-20 CVE-2022-1770 Improper Privilege Management vulnerability in Trudesk Project Trudesk
Improper Privilege Management in GitHub repository polonel/trudesk prior to 1.2.2.
network
low complexity
trudesk-project CWE-269
8.8
2022-05-20 CVE-2022-1754 Integer Overflow or Wraparound vulnerability in Trudesk Project Trudesk
Integer Overflow or Wraparound in GitHub repository polonel/trudesk prior to 1.2.2.
network
low complexity
trudesk-project CWE-190
6.5
2022-05-16 CVE-2022-1728 Integer Overflow or Wraparound vulnerability in Trudesk Project Trudesk
Allowing long password leads to denial of service in polonel/trudesk in GitHub repository polonel/trudesk prior to 1.2.2.
network
low complexity
trudesk-project CWE-190
6.5
2022-05-12 CVE-2022-1044 Insecure Storage of Sensitive Information vulnerability in Trudesk Project Trudesk
Sensitive Data Exposure Due To Insecure Storage Of Profile Image in GitHub repository polonel/trudesk prior to v1.2.1.
network
low complexity
trudesk-project CWE-922
6.5
2022-04-11 CVE-2022-1045 Unspecified vulnerability in Trudesk Project Trudesk
Stored XSS viva .svg file upload in GitHub repository polonel/trudesk prior to v1.2.0.
network
low complexity
trudesk-project
5.4
2022-04-10 CVE-2022-1290 Unspecified vulnerability in Trudesk Project Trudesk
Stored XSS in "Name", "Group Name" & "Title" in GitHub repository polonel/trudesk prior to v1.2.0.
network
low complexity
trudesk-project
5.4