Vulnerabilities
Vulnerable Software
Mealie Project:  Security Vulnerabilities
A stored cross-site scripting (XSS) vulnerability in Mealie v0.5.5 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Shopping Lists item names text field.
CVSS Score
5.4
EPSS Score
0.006
Published
2022-08-02
Mealie1.0.0beta3 was discovered to contain a Server-Side Template Injection vulnerability, which allows attackers to execute arbitrary code via a crafted Jinja2 template.
CVSS Score
7.2
EPSS Score
0.01
Published
2022-08-02
Mealie 1.0.0beta3 contains an arbitrary file upload vulnerability which allows attackers to execute arbitrary code via a crafted file.
CVSS Score
9.8
EPSS Score
0.018
Published
2022-08-02
A stored cross-site scripting (XSS) vulnerability in Mealie 1.0.0beta3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the recipe description text field.
CVSS Score
5.4
EPSS Score
0.005
Published
2022-08-02


Contact Us

Shodan ® - All rights reserved