VYPR
Vendor

Redmine

Products
2
CVEs
58
Across products
58
Status
Private

Products

2

Recent CVEs

58
View all 58 CVEs →
  • CVE-2023-31541CriJun 13, 2023
    risk 0.64cvss 9.8epss 0.01

    A unrestricted file upload vulnerability was discovered in the ‘Browse and upload images’ feature of the CKEditor v1.2.3 plugin for Redmine, which allows arbitrary files to be uploaded to the server.

  • CVE-2021-30164CriApr 6, 2021
    risk 0.64cvss 9.8epss 0.01

    Redmine before 4.0.8 and 4.1.x before 4.1.2 allows attackers to bypass the add_issue_notes permission requirement by leveraging the Issues API.

  • CVE-2024-36267HigMay 30, 2024
    risk 0.53cvss 8.1epss 0.01

    Path traversal vulnerability exists in Redmine DMSF Plugin versions prior to 3.1.4. If this vulnerability is exploited, a logged-in user may obtain or delete arbitrary files on the server (within the privilege of the Redmine process).

  • CVE-2022-44030HigDec 6, 2022
    risk 0.49cvss 7.5epss 0.01

    Redmine 5.x before 5.0.4 allows downloading of file attachments of any Issue or any Wiki page due to insufficient permission checks. Depending on the configuration, this may require login as a registered user.

  • CVE-2021-37156HigAug 5, 2021
    risk 0.49cvss 7.5epss 0.01

    Redmine 4.2.0 and 4.2.1 allow existing user sessions to continue upon enabling two-factor authentication for the user's account, but the intended behavior is for those sessions to be terminated.

  • CVE-2021-31863HigApr 28, 2021
    risk 0.49cvss 7.5epss 0.02

    Insufficient input validation in the Git repository integration of Redmine before 4.0.9, 4.1.x before 4.1.3, and 4.2.x before 4.2.1 allows Redmine users to read arbitrary local files accessible by the application server process.

  • CVE-2021-30163HigApr 6, 2021
    risk 0.49cvss 7.5epss 0.01

    Redmine before 4.0.8 and 4.1.x before 4.1.2 allows attackers to discover the names of private projects if issue-journal details exist that have changes to project_id values.

  • CVE-2017-15577HigOct 18, 2017
    risk 0.49cvss 7.5epss 0.02

    Redmine before 3.2.6 and 3.3.x before 3.3.3 mishandles the rendering of wiki links, which allows remote attackers to obtain sensitive information.

  • CVE-2017-15576HigOct 18, 2017
    risk 0.49cvss 7.5epss 0.02

    Redmine before 3.2.6 and 3.3.x before 3.3.3 mishandles Time Entry rendering in activity views, which allows remote attackers to obtain sensitive information.

  • CVE-2017-15572HigOct 18, 2017
    risk 0.49cvss 7.5epss 0.02

    In Redmine before 3.2.6 and 3.3.x before 3.3.3, remote attackers can obtain sensitive information (password reset tokens) by reading a Referer log, because account/lost_password does not use a redirect.

  • CVE-2017-15575HigOct 18, 2017
    risk 0.48cvss 7.3epss 0.01

    In Redmine before 3.2.6 and 3.3.x before 3.3.3, Redmine.pm lacks a check for whether the Repository module is enabled in a project's settings, which might allow remote attackers to obtain sensitive differences information or possibly have unspecified other impact.

  • CVE-2015-8474HigApr 12, 2016
    risk 0.41cvss 7.4epss 0.02

    Open redirect vulnerability in the valid_back_url function in app/controllers/application_controller.rb in Redmine before 2.6.7, 3.0.x before 3.0.5, and 3.1.x before 3.1.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a crafted…

  • CVE-2023-47260MedNov 5, 2023
    risk 0.40cvss 6.1epss 0.00

    Redmine before 4.2.11 and 5.0.x before 5.0.6 allows XSS via thumbnails.

  • CVE-2023-47259MedNov 5, 2023
    risk 0.40cvss 6.1epss 0.00

    Redmine before 4.2.11 and 5.0.x before 5.0.6 allows XSS in the Textile formatter.

  • CVE-2023-47258MedNov 5, 2023
    risk 0.40cvss 6.1epss 0.00

    Redmine before 4.2.11 and 5.0.x before 5.0.6 allows XSS in a Markdown formatter.

  • CVE-2022-44637MedDec 12, 2022
    risk 0.40cvss 6.1epss 0.00

    Redmine before 4.2.9 and 5.0.x before 5.0.4 allows persistent XSS in its Textile formatter due to improper sanitization in Redcloth3 Textile-formatted fields. Depending on the configuration, this may require login as a registered user.

  • CVE-2022-44031MedDec 12, 2022
    risk 0.40cvss 6.1epss 0.00

    Redmine before 4.2.9 and 5.0.x before 5.0.4 allows persistent XSS in its Textile formatter due to improper sanitization of the blockquote syntax in Textile-formatted fields.

  • CVE-2021-29274MedMar 29, 2021
    risk 0.40cvss 6.1epss 0.01

    Redmine 4.1.x before 4.1.2 allows XSS because an issue's subject is mishandled in the auto complete tip.

  • CVE-2019-15950MedSep 16, 2019
    risk 0.40cvss 6.1epss 0.01

    The CRM Plugin before 4.2.4 for Redmine allows XSS via crafted vCard data.

  • CVE-2017-15574MedOct 18, 2017
    risk 0.40cvss 6.1epss 0.01

    In Redmine before 3.2.6 and 3.3.x before 3.3.3, stored XSS is possible by using an SVG document as an attachment.