openrefine Latest High & Critical Vulnerabilities
Latest High & Critical vulnerabilities published by openrefine
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
OpenRefine's PreviewExpressionCommand, which is eval, lacks protection against cross-site request forgery (CSRF)
CVE-2024-47879OpenrefineOpenrefine8.8HIGHOpenRefine's SQLite integration allows filesystem access, remote code execution (RCE)
CVE-2024-47881OpenrefineOpenrefine8.8HIGHButterfly has path/URL confusion in resource handling leading to multiple weaknesses
CVE-2024-47883OpenrefineSimile-butterfly9.1CRITICALJDBC Attack Vulnerability in OpenRefine (versions <= 3.7.7)
CVE-2024-23833OpenrefineOpenrefine7.5HIGHOpenRefine vulnerable to arbitrary file read in project import with mysql jdbc url attack
CVE-2023-41886OpenRefineOpenRefine7.5HIGHRemote Code exec in project import with mysql jdbc url attack
CVE-2023-41887OpenRefineOpenRefineEPSS 59%9.8CRITICALZip slip in OpenRefine
CVE-2023-37476OpenrefineOpenrefine7.8HIGHDirectory Traversal Vulnerability in OpenRefine by Google
CVE-2019-3580OpenrefineOpenrefine7.5HIGHXML External Entity Vulnerability in OpenRefine by OpenRefine
CVE-2018-20157OpenrefineOpenrefine7.5HIGH
