VYPR
Vendor

Gliffy

Products
1
CVEs
4
Across products
4
Status
Private

Products

1

Recent CVEs

4
  • CVE-2024-10315MedNov 11, 2024
    risk 0.45cvss epss 0.00

    In Gliffy Online an insecure configuration was discovered in versions before 4.14.0-6. Reported by Alpha Inferno PVT LTD.

  • CVE-2024-7141MedFeb 20, 2025
    risk 0.38cvss epss 0.00

    Versions of Gliffy Online prior to versions 4.14.0-7 contains a Cross Site Request Forgery (CSRF) flaw.

  • CVE-2024-5174MedFeb 24, 2025
    risk 0.34cvss epss 0.00

    A flaw in Gliffy results in broken authentication through the reset functionality of the application.

  • CVE-2012-2928May 22, 2012
    risk 0.00cvss epss 0.03

    The Gliffy plugin before 3.7.1 for Atlassian JIRA, and before 4.2 for Atlassian Confluence, does not properly restrict the capabilities of third-party XML parsers, which allows remote attackers to read arbitrary files or cause a denial of service (resource consumption) via…