Opentrade ProjectCVEs & Vulnerabilities
2 CVEs affecting Opentrade Project products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
2 CVEs→ All vendors
Most Affected Products
opentrade 2
CVE-2020-6847MEDIUM
OpenTrade through 0.2.0 has a DOM-based XSS vulnerability that is executed when an administrator attempts to delete a message that contains JavaScript.
11 Jan 2020
5.4
CVSS
CVE-2019-19250CRITICAL
OpenTrade before 2019-11-23 allows SQL injection, related to server/modules/api/v1.js and server/utils.js.
25 Nov 2019
9.8
CVSS
← PrevPage 1 / 1Next →