Package impact

java Maven / org.graylog2:graylog2-server

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Published Description Impact
CVE-2025-53106 unknown 11mo ago Graylog vulnerable to privilege escalation through API tokens java
CVE-2025-46827 unknown 1y ago Graylog Allows Session Takeover via Insufficient HTML Sanitization java
CVE-2025-30373 unknown 1y ago Graylog's Authenticated HTTP inputs ingest message even if Authorization header is missing or has wrong value java
CVE-2024-24823 unknown 2y ago Graylog session fixation vulnerability through cookie injection java
CVE-2024-24824 unknown 2y ago Graylog vulnerable to instantiation of arbitrary classes triggered by API request java
CVE-2023-41044 unknown 3y ago Graylog server has partial path traversal vulnerability in Support Bundle feature java
CVE-2023-41045 unknown 3y ago Graylog vulnerable to insecure source port usage for DNS queries java
CVE-2023-41041 unknown 3y ago Graylog user session is still usable after logout java
CVE-2018-11650 unknown 4y ago Cross-site Scripting in Graylog Server java
CVE-2018-11651 unknown 4y ago Cross-site Scripting in Graylog java
CVE-2018-14380 unknown 4y ago Cross-site Scripting in Graylog Server java