Home/Product/rallly
Product

rallly

11 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-66027
< 4.5.6
Rallly is an open-source scheduling and collaboration tool. Prior to version 4.5.6, an information disclosure vulnerability expose
6.5MEDIUM
CVE-2025-65034
< 4.5.4
Rallly is an open-source scheduling and collaboration tool. Prior to version 4.5.4, an improper authorization vulnerability allows
8.1HIGH
CVE-2025-65033
< 4.5.4
Rallly is an open-source scheduling and collaboration tool. Prior to version 4.5.4, an authorization flaw in the poll management f
8.1HIGH
CVE-2025-65032
< 4.5.4
Rallly is an open-source scheduling and collaboration tool. Prior to version 4.5.4, an Insecure Direct Object Reference (IDOR) vul
6.5MEDIUM
CVE-2025-65031
< 4.5.4
Rallly is an open-source scheduling and collaboration tool. Prior to version 4.5.4, an improper authorization flaw in the comment
6.5MEDIUM
CVE-2025-65030
< 4.5.4
Rallly is an open-source scheduling and collaboration tool. Prior to version 4.5.4, an authorization flaw in the comment deletion
7.1HIGH
CVE-2025-65029
< 4.5.4
Rallly is an open-source scheduling and collaboration tool. Prior to version 4.5.4, an insecure direct object reference (IDOR) vul
8.1HIGH
CVE-2025-65028
< 4.5.4
Rallly is an open-source scheduling and collaboration tool. Prior to version 4.5.4, an insecure direct object reference (IDOR) vul
6.5MEDIUM
CVE-2025-65021
< 4.5.4
Rallly is an open-source scheduling and collaboration tool. Prior to version 4.5.4, an Insecure Direct Object Reference (IDOR) vul
9.1CRITICAL
CVE-2025-65020
< 4.5.4
Rallly is an open-source scheduling and collaboration tool. Prior to version 4.5.4, an Insecure Direct Object Reference (IDOR) vul
6.5MEDIUM
CVE-2025-47781
<= 3.11.2
Rallly is an open-source scheduling and collaboration tool. Versions up to and including 3.22.1 of the application features token
9.8CRITICAL
threatengine.sh