Vulnerabilities (CVE)

Filtered by vendor Opencats Subscribe
Filtered by product Opencats
Total 21 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-13358 1 Opencats 1 Opencats 2024-02-04 5.0 MEDIUM 7.5 HIGH
lib/DocumentToText.php in OpenCats before 0.9.4-3 has XXE that allows remote users to read files on the underlying operating system. The attacker must upload a file in the docx or odt format.