VYPR

Codebeamer

by Ptc

CVEs (3)

  • CVE-2024-3951HigMay 8, 2024
    risk 0.46cvss 7.1epss 0.00

    PTC Codebeamer is vulnerable to a cross site scripting vulnerability that could allow an attacker to inject and execute malicious code.

  • CVE-2023-4296Aug 29, 2023
    risk 0.00cvss epss 0.01

    ​If an attacker tricks an admin user of PTC Codebeamer into clicking on a malicious link, it may allow the attacker to inject arbitrary code to be executed in the browser on the target device.

  • CVE-2019-20635Apr 2, 2020
    risk 0.00cvss epss 0.01

    codeBeamer before 9.5.0-RC3 does not properly restrict the ability to execute custom Java code and access the Java class loader via computed fields.