Product
opensupports
3 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-10696
CVE-2025-10695
CVE-2023-48031
all versions
OpenSupports exposes an endpoint that allows the list of 'supervised users' for any account to be edited, but it does not validate
all versions
Two unauthenticated diagnostic endpoints allow arbitrary backend-initiated network connections to an attacker‑supplied destinati
all versions
OpenSupports v4.11.0 is vulnerable to Unrestricted Upload of File with Dangerous Type. In the comment function, an attacker can by