VYPR

Opencti

by Opencti Platform

Source repositories

CVEs (24)

  • CVE-2024-45805MedDec 26, 2024
    risk 0.28cvss 4.3epss 0.00

    OpenCTI is an open-source cyber threat intelligence platform. Before 6.3.0, general users can access information that can only be accessed by users with access privileges to admin and support information (SETTINGS_SUPPORT). This is due to inadequate access control for support…

  • CVE-2026-35211MedJul 8, 2026
    risk 0.00cvss 6.5epss 0.01

    OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 7.260401.0, the OpenCTI GraphQL API exposes a script filter operator in its FilterOperator enum that allows any authenticated user with the KNOWLEDGE capability to pass…

  • CVE-2026-35210HigJul 8, 2026
    risk 0.00cvss 7.1epss 0.00

    OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 7.260326.0, an authorization bypass vulnerability in OpenCTI allows any authenticated user with KNOWLEDGE_KNUPDATE permission to bypass Confidence Level validation and…

  • CVE-2025-61782MedJan 7, 2026
    risk 0.00cvss 5.4epss 0.00

    OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to version 6.8.3, an open redirect vulnerability exists in the OpenCTI platform's SAML authentication endpoint (/auth/saml/callback). By manipulating the RelayState…

Page 2 of 2