VYPR

Gliffy

by Gliffy

CVEs (3)

  • CVE-2025-1714MedMar 5, 2025
    risk 0.45cvss epss 0.00

    Lack of Rate Limiting in Sign-up workflow in Perforce Gliffy prior to version 4.14.0-7 on Gliffy online allows attacker to enumerate valid user emails and potentially DOS the server

  • CVE-2024-5174MedFeb 24, 2025
    risk 0.34cvss epss 0.00

    A flaw in Gliffy results in broken authentication through the reset functionality of the application.

  • CVE-2012-2928May 22, 2012
    risk 0.00cvss epss 0.03

    The Gliffy plugin before 3.7.1 for Atlassian JIRA, and before 4.2 for Atlassian Confluence, does not properly restrict the capabilities of third-party XML parsers, which allows remote attackers to read arbitrary files or cause a denial of service (resource consumption) via…