VYPR

by GNOME Foundation

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2017-1000024Hig0.497.50.00Jul 17, 2017Shotwell version 0.24.4 or earlier and 0.25.3 or earlier is vulnerable to an information disclosure in the web publishing plugins resulting in potential password and oauth token plaintext transmission
CVE-2016-1000033Low0.243.70.00Oct 25, 2016Shotwell version 0.22.0 (and possibly other versions) is vulnerable to a TLS/SSL certification validation flaw resulting in a potential for man in the middle attacks.