VYPR

Collabora Online

by Collaboraoffice

CVEs (4)

  • CVE-2023-34088HigMay 31, 2023
    risk 0.57cvss 8.7epss 0.00

    Collabora Online is a collaborative online office suite. A stored cross-site scripting (XSS) vulnerability was found in Collabora Online prior to versions 22.05.13, 21.11.9.1, and 6.4.27. An attacker could create a document with an XSS payload as a document name. Later, if an…

  • CVE-2023-48314HigDec 1, 2023
    risk 0.46cvss 7.1epss 0.00

    Collabora Online is a collaborative online office suite based on LibreOffice technology. Users of Nextcloud with Collabora Online Built-in CODE Server app can be vulnerable to attack via proxy.php. This vulnerability has been fixed in Collabora Online - Built-in CODE Server…

  • CVE-2024-29182MedApr 4, 2024
    risk 0.40cvss 6.1epss 0.00

    Collabora Online is a collaborative online office suite based on LibreOffice. A stored cross-site scripting vulnerability was found in Collabora Online. An attacker could create a document with an XSS payload in document text referenced by field which, if hovered over to produce…

  • CVE-2026-23623MedFeb 6, 2026
    risk 0.34cvss 5.3epss 0.00

    Collabora Online is a collaborative online office suite based on LibreOffice technology. Prior to Collabora Online Development Edition version 25.04.08.2 and prior to Collabora Online versions 23.05.20.1, 24.04.17.3, and 25.04.7.5, a user with view-only rights and no download…