Deluge-torrent

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 5
    Known Exploited: 0
    1
    Critical Level Threats
    1
    High Level Threats
    3
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2019-25586

    Deluge 1.3.15 Denial of Service via URL Field

    Last Modified: Mar 25, 2026
    Published: Mar 22, 2026

    CVE-2019-25585

    Deluge 1.3.15 Denial of Service via Webseeds Field

    Last Modified: Mar 25, 2026
    Published: Mar 22, 2026

    CVE-2021-3427

    The Deluge Web-UI is vulnerable to XSS through a crafted torrent file. The the data from torrent files is not properly sanitised as it's interpreted directly as HTML. Someone who supplies the user with a malicious torrent file can execute arbitrary Javascript code in the context of the user's browser session.

    Last Modified: Nov 21, 2024
    Published: Aug 26, 2022

    CVE-2017-9031

    The WebUI component in Deluge before 1.3.15 contains a directory traversal vulnerability involving a request in which the name of the render file is not associated with any template file.

    Last Modified: Apr 20, 2025
    Published: May 17, 2017

    CVE-2017-7178

    CSRF was discovered in the web UI in Deluge before 1.3.14. The exploitation methodology involves (1) hosting a crafted plugin that executes an arbitrary program from its __init__.py file and (2) causing the victim to download, install, and enable this plugin.

    Last Modified: Apr 20, 2025
    Published: Mar 18, 2017
    Items Per Page
    Deluge-Torrent Vulnerabilities & Security CVEs | CVE-DB