Vulnerabilities > Uptime Kuma Project

DATE CVE VULNERABILITY TITLE RISK
2023-07-05 CVE-2023-36821 Unspecified vulnerability in Uptime-Kuma Project Uptime-Kuma
Uptime Kuma, a self-hosted monitoring tool, allows an authenticated attacker to install a maliciously crafted plugin in versions prior to 1.22.1, which may lead to remote code execution.
network
low complexity
uptime-kuma-project
8.8
2023-07-05 CVE-2023-36822 Path Traversal vulnerability in Uptime-Kuma Project Uptime-Kuma
Uptime Kuma, a self-hosted monitoring tool, has a path traversal vulnerability in versions prior to 1.22.1.
network
low complexity
uptime-kuma-project CWE-22
8.1
2023-04-04 CVE-2023-26777 Cross-site Scripting vulnerability in Uptime Kuma Project Uptime Kuma 1.19.6
Cross Site Scripting vulnerability found in : louislam Uptime Kuma v.1.19.6 and before allows a remote attacker to execute arbitrary commands via the description, title, footer, and incident creation parameter of the status_page.js endpoint.
network
low complexity
uptime-kuma-project CWE-79
6.1
2023-02-21 CVE-2023-25810 Cross-site Scripting vulnerability in Uptime-Kuma Project Uptime-Kuma
Uptime Kuma is a self-hosted monitoring tool.
network
low complexity
uptime-kuma-project CWE-79
5.4
2023-02-21 CVE-2023-25811 Cross-site Scripting vulnerability in Uptime-Kuma Project Uptime-Kuma
Uptime Kuma is a self-hosted monitoring tool.
network
low complexity
uptime-kuma-project CWE-79
5.4