Edgewall

    Dashboard / Vendors

    Products: 3
    Vulnerabilities: 5
    Known Exploited: 0
    1
    Critical Level Threats
    3
    High Level Threats
    1
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-0685

    Server side template inject (SSTI) in Edgewall Genshi Template Engine

    Last Modified: Jun 29, 2026
    Published: Jun 26, 2026

    CVE-2010-5108

    Trac 0.11.6 does not properly check workflow permissions before modifying a ticket. This can be exploited by an attacker to change the status and resolution of tickets without having proper permissions.

    Last Modified: Nov 21, 2024
    Published: Nov 13, 2019

    CVE-2009-4405

    Multiple unspecified vulnerabilities in Trac before 0.11.6 have unknown impact and attack vectors, possibly related to (1) "policy checks in report results when using alternate formats" or (2) a "check for the 'raw' role that is missing in docutils < 0.6."

    Last Modified: Apr 23, 2026
    Published: Dec 23, 2009

    CVE-2009-2144

    SQL injection vulnerability in the FireStats plugin before 1.6.2-stable for WordPress allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Last Modified: Apr 23, 2026
    Published: Jun 22, 2009

    CVE-2008-2951

    Open redirect vulnerability in the search script in Trac before 0.10.5 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the q parameter, possibly related to the quickjump function.

    Last Modified: Apr 23, 2026
    Published: Jul 27, 2008
    Items Per Page
    Edgewall Vulnerabilities & Security CVEs | CVE-DB