Home/Product/craws openatlas
Product

craws openatlas

16 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-60917
<= 8.12.0
A reflected cross-site scripting (XSS) vulnerability in the /overview/network/ endpoint of Austrian Archaeological Institute Opena
4.6MEDIUM
CVE-2025-60916
<= 8.12.0
A reflected cross-site scripting (XSS) vulnerability in the /overview/network/ endpoint of Austrian Archaeological Institute Opena
5.4MEDIUM
CVE-2025-60915
<= 8.12.0
An issue in the size query parameter (/views/file.py) of Austrian Archaeological Institute Openatlas before v8.12.0 allows attacke
8.1HIGH
CVE-2025-60914
<= 8.12.0
Incorrect access control in Austrian Archaeological Institute Openatlas before v8.12.0 allows attackers to access sensitive inform
4.6MEDIUM
CVE-2025-56423
< 8.12.1
An issue in Austrian Academy of Sciences (AW) Austrian Archaeological Institute OpenAtlas v.8.12.0 allows a remote attacker to obt
5.3MEDIUM
CVE-2025-40709
all versions
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital Humanities and Cultural Heritage
5.4MEDIUM
CVE-2025-40708
all versions
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital Humanities and Cultural Heritage
5.4MEDIUM
CVE-2025-40707
all versions
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital Humanities and Cultural Heritage
5.4MEDIUM
CVE-2025-40706
all versions
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital Humanities and Cultural Heritage
5.4MEDIUM
CVE-2025-40705
all versions
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital Humanities and Cultural Heritage
5.4MEDIUM
CVE-2025-40704
all versions
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital Humanities and Cultural Heritage
5.4MEDIUM
CVE-2025-40703
all versions
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital Humanities and Cultural Heritage
5.4MEDIUM
CVE-2025-40702
all versions
Cross-Site Scripting (XSS) vulnerability in OpenAtlas v8.9.0 from the Austrian Centre for Digital Humanities and Cultural Heritage
5.4MEDIUM
CVE-2025-51535
< 8.12.0
Austrian Archaeological Institute (AI) OpenAtlas v8.11.0 as discovered to contain a SQL injection vulnerability.
9.1CRITICAL
CVE-2025-51534
< 8.12.0
A cross-site scripting (XSS) vulnerability in Austrian Archaeological Institute (AI) OpenAtlas v8.11.0 allows attackers to execute
8.1HIGH
CVE-2025-51536
< 8.12.0
Austrian Archaeological Institute (AI) OpenAtlas v8.11.0 as discovered to contain a hardcoded Administrator password.
9.8CRITICAL
threatengine.sh