Vulnerabilities (CVE)

Filtered by vendor Openrefine Subscribe
Filtered by product Openrefine
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-41401 1 Openrefine 1 Openrefine 2023-08-08 N/A 6.5 MEDIUM
OpenRefine <= v3.5.2 contains a Server-Side Request Forgery (SSRF) vulnerability, which permits unauthorized users to exploit the system, potentially leading to unauthorized access to internal resources and sensitive file disclosure.
CVE-2018-19859 1 Openrefine 1 Openrefine 2019-03-28 4.0 MEDIUM 6.5 MEDIUM
OpenRefine before 3.2 beta allows directory traversal via a relative pathname in a ZIP archive.