Vulnerabilities
Vulnerable Software
Firefly III (aka firefly-iii) before 6.1.1 allows webhooks HTML Injection.
CVSS Score
6.1
EPSS Score
0.001
Published
2024-01-05
Insufficient Session Expiration in GitHub repository firefly-iii/firefly-iii prior to 6.
CVSS Score
5.4
EPSS Score
0.001
Published
2023-04-05
Improper Input Validation in GitHub repository firefly-iii/firefly-iii prior to 6.0.0.
CVSS Score
5.2
EPSS Score
0.0
Published
2023-04-01
Incorrect Authorization in GitHub repository firefly-iii/firefly-iii prior to 5.8.0.
CVSS Score
6.5
EPSS Score
0.0
Published
2023-01-14
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
CVSS Score
4.3
EPSS Score
0.002
Published
2021-12-04
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
CVSS Score
4.3
EPSS Score
0.001
Published
2021-12-01
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
CVSS Score
5.4
EPSS Score
0.001
Published
2021-11-13
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
CVSS Score
3.5
EPSS Score
0.001
Published
2021-10-27
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
CVSS Score
4.3
EPSS Score
0.001
Published
2021-10-27
firefly-iii is vulnerable to Unrestricted Upload of File with Dangerous Type
CVSS Score
6.3
EPSS Score
0.002
Published
2021-10-19


Contact Us

Shodan ® - All rights reserved