Products: 5
    Vulnerabilities: 20
    Known Exploited: 0
    0
    Critical Level Threats
    7
    High Level Threats
    13
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2018-25145

    Microhard Systems IPn4G 1.1.0 Configuration Disclosure via Authenticated Download

    Last Modified: Jul 28, 2026
    Published: Dec 24, 2025

    CVE-2024-22209

    XBlock custom auth does not respect JWT Scopes

    Last Modified: Nov 21, 2024
    Published: Jan 13, 2024

    CVE-2022-32195

    Open edX platform before 2022-06-06 allows XSS via the "next" parameter in the logout URL.

    Last Modified: Nov 21, 2024
    Published: Jun 09, 2022

    CVE-2021-39248

    Open edX through Lilac.1 allows XSS in common/static/common/js/discussion/utils.js via crafted LaTeX content within a discussion.

    Last Modified: Nov 21, 2024
    Published: Aug 17, 2021

    CVE-2020-13145

    Studio in Open edX Ironwood 2.5 allows users to upload SVG files via the "Content>File Uploads" screen. These files can contain JavaScript code and thus lead to Stored XSS.

    Last Modified: Nov 21, 2024
    Published: May 18, 2020
    Items Per Page