Products: 1
    Vulnerabilities: 9
    Known Exploited: 0
    3
    Critical Level Threats
    4
    High Level Threats
    2
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-50885

    Incorrect access control in the share-based read endpoints of Sismics Docs (Teedy) v1.11 allow unauthorized attackers to access sensitive endpoints via a crafted request.

    Last Modified: Jun 18, 2026
    Published: Jun 15, 2026

    CVE-2025-11853

    Sismics Teedy API Endpoint file access control

    Last Modified: Feb 24, 2026
    Published: Oct 16, 2025

    CVE-2024-54852

    When LDAP connection is activated in Teedy versions between 1.9 to 1.12, the username field of the login form is vulnerable to LDAP injection. Due to improper sanitization of user input, an unauthenticated attacker is then able to perform various malicious actions, such as creating arbitrary accounts and spraying passwords.

    Last Modified: May 24, 2025
    Published: Jan 29, 2025

    CVE-2024-54851

    Teedy <= 1.12 is vulnerable to Cross Site Request Forgery (CSRF), due to the lack of CSRF protection.

    Last Modified: May 23, 2025
    Published: Jan 29, 2025

    CVE-2025-22963

    Teedy through 1.11 allows CSRF for account takeover via POST /api/user/admin.

    Last Modified: Oct 07, 2025
    Published: Jan 13, 2025
    Items Per Page
    Sismics Vulnerabilities & Security CVEs | CVE-DB