Vulnerabilities

Last updated 1 hour ago
Filters
Severity
Critical Severity
CVSS Score Range: 9.0–10.0
Critical severity vulnerabilities (CVSS 9.0–10.0). These represent the highest impact issues.
High Severity
CVSS Score Range: 7.0–8.9
High severity vulnerabilities (CVSS 7.0–8.9). Serious vulnerabilities that should be prioritized soon after critical fixes.
Medium Severity
CVSS Score Range: 4.0–6.9
Medium severity vulnerabilities (CVSS 4.0–6.9). Important issues that meaningfully reduce security confidence.
Low Severity
CVSS Score Range: < 4.0
Low severity vulnerabilities (CVSS < 4.0). Hygiene issues that can accumulate but pose lower immediate risk.
Unknown Severity
CVSS Score Range: No score
Vulnerabilities without an assigned CVSS score. Severity is not determinable from available data.
Package Summary Severity Published Modified
io.openremote:openremote-manager OpenRemote Manager: removeAlarms cross-realm IDOR (bulk delete) Critical 9.6 3 months ago 3 days ago
io.openremote:openremote-manager OpenRemote has Authenticated SQL Injection via Datapoint Crosstab Export High Risk 8.0 2 months ago 2 months ago
io.openremote:openremote-manager OpenRemote has Cross-Realm User Information Disclosure in UserResourceImpl High Risk 7.7 2 months ago 2 months ago
io.openremote:openremote-manager OpenRemote read-only asset users can write predicted datapoints Medium Risk 4.3 2 months ago 2 months ago
io.openremote:openremote-manager OpenRemote has XXE in Velbus Asset Import High Risk 7.6 5 months ago 4 months ago
io.openremote:openremote-manager Expression Injection in OpenRemote Critical 9.9 5 months ago 4 months ago
io.openremote:openremote-manager OpenRemote has Improper Access Control via updateUserRealmRoles function High Risk 7.0 5 months ago 4 months ago