Lucene search

K

Dependency-track Security Vulnerabilities

cve
cve

CVE-2019-1020007

Dependency-Track before 3.5.1 allows XSS.

5.4CVSS

5.5AI Score

0.001EPSS

2019-07-29 03:15 PM
18
cve
cve

CVE-2022-39351

Dependency-Track is a Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain. Prior to version 4.6.0, performing an API request using a valid API key with insufficient permissions causes the API key to be written to Dependency-Track's audit lo...

4.4CVSS

4.8AI Score

0.0005EPSS

2022-10-25 05:15 PM
33
7