Products: 2
    Vulnerabilities: 6
    Known Exploited: 0
    3
    Critical Level Threats
    1
    High Level Threats
    2
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2023-35857

    In Siren Investigate before 13.2.2, session keys remain active even after logging out.

    Last Modified: Dec 11, 2024
    Published: Jun 19, 2023

    CVE-2022-47543

    An issue was discovered in Siren Investigate before 12.1.7. There is an ACL bypass on global objects.

    Last Modified: Apr 10, 2025
    Published: Jan 05, 2023

    CVE-2022-47544

    An issue was discovered in Siren Investigate before 12.1.7. Script variable whitelisting is insufficiently sandboxed.

    Last Modified: Apr 10, 2025
    Published: Jan 05, 2023

    CVE-2021-36794

    In Siren Investigate before 11.1.4, when enabling the cluster feature of the Siren Alert application, TLS verifications are disabled globally in the Siren Investigate main process.

    Last Modified: Nov 21, 2024
    Published: Nov 02, 2021

    CVE-2021-31216

    Siren Investigate before 11.1.1 contains a server side request forgery (SSRF) defect in the built-in image proxy route (which is enabled by default). An attacker with access to the Investigate installation can specify an arbitrary URL in the parameters of the image proxy route and fetch external URLs as the Investigate process on the host.

    Last Modified: Nov 21, 2024
    Published: Jul 19, 2021
    Items Per Page
    Siren Vulnerabilities & Security CVEs | CVE-DB