Vulnerabilities > Weblate > Weblate > 2.13.1

DATE CVE VULNERABILITY TITLE RISK
2022-03-04 CVE-2022-23915 Argument Injection or Modification vulnerability in Weblate
The package weblate from 0 and before 4.11.1 are vulnerable to Remote Code Execution (RCE) via argument injection when using git or mercurial repositories.
network
low complexity
weblate CWE-88
6.5
2022-02-25 CVE-2022-24710 Cross-site Scripting vulnerability in Weblate
Weblate is a copyleft software web-based continuous localization system.
network
weblate CWE-79
3.5