VYPR
Vendor

ToolJet

Products
1
CVEs
15
Across products
15
Status
Private

Products

1

Recent CVEs

15
  • CVE-2022-27978HigApr 26, 2023
    risk 0.49cvss 7.5epss 0.01

    Tooljet v1.6 does not properly handle missing values in the API, allowing attackers to arbitrarily reset passwords via a crafted HTTP request.

  • CVE-2022-27979MedApr 26, 2023
    risk 0.35cvss 5.4epss 0.00

    A cross-site scripting (XSS) vulnerability in ToolJet v1.6.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Comment Body component.

  • CVE-2022-4111MedNov 22, 2022
    risk 0.35cvss 6.5epss 0.01

    Unrestricted file size limit can lead to DoS in tooljet/tooljet <1.27 by allowing a logged in attacker to upload profile pictures over 2MB.

  • CVE-2026-73068MedAug 11, 2026
    risk 0.31cvss 5.9epss 0.00

    ToolJet is the open-source foundation am AI-native platform for building and deploying internal tools, workflows and AI agents. Prior to 3.20.207, the ToolJet Database HTTP API in server/src/modules/tooljet-db/controller.ts authorizes operations against the :organizationId URL…

  • CVE-2026-54344MedJul 8, 2026
    risk 0.00cvss 4.7epss 0.00

    ToolJet is an open-source low-code platform for building internal tools. Prior to 3.20.180, ToolJet's render preview deployment workflow interpolates github.event.comment.body directly into a bash conditional in a run step, allowing any GitHub user who can comment on an open…

  • CVE-2026-55413CriJun 25, 2026
    risk 0.00cvss epss 0.00

    ToolJet is the open-source foundation am AI-native platform for building and deploying internal tools, workflows and AI agents. Prior to 3.20.178-lts, any authenticated user with builder role (free tier) can overwrite a globally-shared marketplace plugin with arbitrary…

  • CVE-2026-55412HigJun 25, 2026
    risk 0.00cvss 8.3epss 0.00

    ToolJet is the open-source foundation am AI-native platform for building and deploying internal tools, workflows and AI agents. Prior to 3.20.178-lts, there's an SSRF in the RestAPI data source component. The RestAPI data source executes HTTP requests server-side, and its…

  • CVE-2026-55411MedJun 25, 2026
    risk 0.00cvss 6.8epss 0.00

    ToolJet is the open-source foundation am AI-native platform for building and deploying internal tools, workflows and AI agents. Prior to 3.20.1780-lts, the authenticated endpoint POST /api/data-sources/decrypt returns the decrypted plaintext for any credential whose…

  • CVE-2022-3422HigOct 7, 2022
    risk 0.00cvss 7.5epss 0.01

    Account Takeover :: when see the info i can see the hash pass i can creaked it ............... Account Takeover :: when see the info i can see the forgot_password_token the hacker can send the request and changed the pass

  • CVE-2022-3348MedSep 28, 2022
    risk 0.00cvss 4.9epss 0.01

    Just like in the previous report, an attacker could steal the account of different users. But in this case, it's a little bit more specific, because it is needed to be an editor in the same app as the victim.

  • CVE-2022-3019HigAug 29, 2022
    risk 0.00cvss 8.8epss 0.01

    The forgot password token basically just makes us capable of taking over the account of whoever comment in an app that we can see (bruteforcing comment id's might also be an option but I wouldn't count on it, since it would take a long time to find a valid one).

  • CVE-2022-2631HigAug 2, 2022
    risk 0.00cvss 8.8epss 0.01

    Improper Access Control in GitHub repository tooljet/tooljet prior to v1.19.0.

  • CVE-2022-2037HigJun 9, 2022
    risk 0.00cvss 8.0epss 0.01

    Excessive Attack Surface in GitHub repository tooljet/tooljet prior to v1.16.0.

  • CVE-2022-23068MedMay 18, 2022
    risk 0.00cvss 5.4epss 0.01

    ToolJet versions v0.6.0 to v1.10.2 are vulnerable to HTML injection where an attacker can inject malicious code inside the first name and last name field while inviting a new user which will be reflected in the invitational e-mail.

  • CVE-2022-23067HigMay 18, 2022
    risk 0.00cvss 8.8epss 0.01

    ToolJet versions v0.5.0 to v1.2.2 are vulnerable to token leakage via Referer header that leads to account takeover . If the user opens the invite link/signup link and then clicks on any external links within the page, it leaks the password set token/signup token in the referer…