Vulnerabilities (CVE)

Filtered by vendor Open-falcon Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-26245 1 Open-falcon 1 Falcon-plus 2024-11-21 7.5 HIGH 9.8 CRITICAL
Falcon-plus v0.3 was discovered to contain a SQL injection vulnerability via the parameter grpName in /config/service/host.go.
CVE-2021-27523 1 Open-falcon 1 Dashboard 2024-11-21 N/A 9.8 CRITICAL
An issue was discovered in open-falcon dashboard version 0.2.0, allows remote attackers to gain, modify, and delete sensitive information via crafted POST request to register interface.