VYPR

Mantisbt

by Mantisbt

Source repositories

CVEs (153)

  • CVE-2014-9701MedAug 9, 2017
    risk 0.35cvss 6.5epss 0.02

    Cross-site scripting (XSS) vulnerability in MantisBT before 1.2.19 and 1.3.x before 1.3.0-beta.2 allows remote attackers to inject arbitrary web script or HTML via the url parameter to permalink_page.php.

  • CVE-2014-9759MedApr 11, 2016
    risk 0.35cvss 5.3epss 0.02

    Incomplete blacklist vulnerability in the config_is_private function in config_api.php in MantisBT 1.3.x before 1.3.0 allows remote attackers to obtain sensitive master salt configuration information via a SOAP API request.

  • CVE-2026-33548MedMar 23, 2026
    risk 0.33cvss 6.1epss 0.00

    Mantis Bug Tracker (MantisBT) is an open source issue tracker. In version 2.28.0, improper escaping of tag names retrieved from History in Timeline (my_view_page.php) allows an attacker to inject HTML and, if CSP settings permit, achieve execution of arbitrary JavaScript, when…

  • CVE-2026-33517MedMar 23, 2026
    risk 0.33cvss 6.1epss 0.00

    Mantis Bug Tracker (MantisBT) is an open source issue tracker. In version 2.28.0, when deleting a Tag (tag_delete.php), improper escaping of its name when displaying the confirmation message allows an attacker to inject HTML and, if CSP settings permit, achieve execution of…

  • CVE-2022-26144MedApr 13, 2022
    risk 0.33cvss 6.1epss 0.01

    An XSS issue was discovered in MantisBT before 2.25.3. Improper escaping of a Plugin name allows execution of arbitrary code (if CSP allows it) in manage_plugin_page.php and manage_plugin_uninstall.php when a crafted plugin is installed.

  • CVE-2021-33557MedJun 17, 2021
    risk 0.33cvss 6.1epss 0.02

    An XSS issue was discovered in manage_custom_field_edit_page.php in MantisBT before 2.25.2. Unescaped output of the return parameter allows an attacker to inject code into a hidden input field.

  • CVE-2020-35571MedFeb 22, 2021
    risk 0.33cvss 6.1epss 0.01

    An issue was discovered in MantisBT through 2.24.3. In the helper_ensure_confirmed call in manage_custom_field_update.php, the custom field name is not sanitized. This may be problematic depending on CSP settings.

  • CVE-2019-15539MedMar 19, 2020
    risk 0.33cvss 6.1epss 0.01

    The proj_doc_edit_page.php Project Documentation feature in MantisBT before 2.21.3 has a stored cross-site scripting (XSS) vulnerability, allowing execution of arbitrary code (if CSP settings permit it) after uploading an attachment with a crafted filename. The code is executed…

  • CVE-2018-14504MedAug 3, 2018
    risk 0.33cvss 6.1epss 0.02

    An issue was discovered in manage_filter_edit_page.php in MantisBT 2.x through 2.15.0. A cross-site scripting (XSS) vulnerability in the Edit Filter page allows execution of arbitrary code (if CSP settings permit it) when displaying a filter with a crafted name (e.g., 'foobar"…

  • CVE-2018-13055MedAug 3, 2018
    risk 0.33cvss 6.1epss 0.02

    A cross-site scripting (XSS) vulnerability in the View Filters page (view_filters_page.php) in MantisBT 2.1.0 through 2.15.0 allows remote attackers to inject arbitrary code (if CSP settings permit it) through a crafted PATH_INFO.

  • CVE-2017-12062MedAug 1, 2017
    risk 0.33cvss 6.1epss 0.04

    An XSS issue was discovered in manage_user_page.php in MantisBT 2.x before 2.5.2. The 'filter' field is not sanitized before being rendered in the Manage User page, allowing remote attackers to execute arbitrary JavaScript code if CSP is disabled.

  • CVE-2017-12061MedAug 1, 2017
    risk 0.33cvss 6.1epss 0.03

    An XSS issue was discovered in admin/install.php in MantisBT before 1.3.12 and 2.x before 2.5.2. Some variables under user control in the MantisBT installation script are not properly sanitized before being output, allowing remote attackers to inject arbitrary JavaScript code,…

  • CVE-2017-7897MedApr 18, 2017
    risk 0.33cvss 6.1epss 0.02

    A cross-site scripting (XSS) vulnerability in the MantisBT (2.3.x before 2.3.2) Timeline include page, used in My View (my_view_page.php) and User Information (view_user_page.php) pages, allows remote attackers to inject arbitrary code (if CSP settings permit it) through crafted…

  • CVE-2017-12419MedAug 5, 2017
    risk 0.32cvss 4.9epss 0.01

    If, after successful installation of MantisBT through 2.5.2 on MySQL/MariaDB, the administrator does not remove the 'admin' directory (as recommended in the "Post-installation and upgrade tasks" section of the MantisBT Admin Guide), and the MySQL client has a local_infile…

  • CVE-2020-28413MedDec 30, 2020
    risk 0.31cvss 5.3epss 0.05

    In MantisBT 2.24.3, SQL Injection can occur in the parameter "access" of the mc_project_get_users function through the API SOAP.

  • CVE-2017-7309MedMar 31, 2017
    risk 0.29cvss 4.8epss 0.57

    A cross-site scripting (XSS) vulnerability in the MantisBT Configuration Report page (adm_config_report.php) allows remote attackers to inject arbitrary code (if CSP settings permit it) through a crafted 'config_option' parameter. This is fixed in 1.3.9, 2.1.3, and 2.2.3.

  • CVE-2026-39960MedMay 20, 2026
    risk 0.28cvss 5.4epss 0.00

    Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.28.1 and below contain flawed logic that causes improper escaping of a textarea custom field's contents in the Update Issue page, (bug_update_page.php) allowing an attacker to inject HTML and, if CSP…

  • CVE-2025-55155MedNov 4, 2025
    risk 0.28cvss 5.4epss 0.00

    Mantis Bug Tracker (MantisBT) is an open source issue tracker. In versions 2.27.1 and below, when a user edits their profile to change their e-mail address, the system saves it without validating that it actually belongs to the user. This could result in storing an invalid email…

  • CVE-2024-34080MedMay 14, 2024
    risk 0.28cvss 5.3epss 0.01

    MantisBT (Mantis Bug Tracker) is an open source issue tracker. If an issue references a note that belongs to another issue that the user doesn't have access to, then it gets hyperlinked. Clicking on the link gives an access denied error as expected, yet some information remains…

  • CVE-2023-22476MedFeb 23, 2023
    risk 0.28cvss 4.3epss 0.01

    Mantis Bug Tracker (MantisBT) is an open source issue tracker. In versions prior to 2.25.6, due to insufficient access-level checks, any logged-in user allowed to perform Group Actions can access to the _Summary_ field of private Issues (i.e. having Private view status, or…

Page 3 of 8