openrefine Latest High & Critical Vulnerabilities
Latest High & Critical vulnerabilities published by openrefine
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
OpenRefine's PreviewExpressionCommand, which is eval, lacks protection against cross-site request forgery (CSRF)
CVE-2024-47879OpenrefineOpenrefine8.8HIGHOpenRefine's SQLite integration allows filesystem access, remote code execution (RCE)
CVE-2024-47881OpenrefineOpenrefine8.8HIGHButterfly has path/URL confusion in resource handling leading to multiple weaknesses
CVE-2024-47883OpenrefineSimile-butterfly9.1CRITICALJDBC Attack Vulnerability in OpenRefine (versions <= 3.7.7)
CVE-2024-23833OpenrefineOpenrefine7.5HIGHOpenRefine vulnerable to arbitrary file read in project import with mysql jdbc url attack
CVE-2023-41886OpenRefineOpenRefine7.5HIGHRemote Code exec in project import with mysql jdbc url attack
CVE-2023-41887OpenRefineOpenRefineEPSS 33%9.8CRITICALDirectory Traversal Vulnerability in OpenRefine by Google
CVE-2019-3580OpenrefineOpenrefine7.5HIGHXML External Entity Vulnerability in OpenRefine by OpenRefine
CVE-2018-20157OpenrefineOpenrefine7.5HIGH
24 October 2024
12 February 2024
15 September 2023
3 January 2019
15 December 2018
No more vulnerabilities to load.