zongdeiqianxing/rengine
Releases0
CVE History
| CVE | Affected | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|---|
| = 1.3.0 | 9.8 CRITICAL | — | ||
Rengine v1.3.0 was discovered to contain a command injection vulnerability via the scan engine function. | ||||
| < 1.2.0 | 9.8 CRITICAL | 7.5 HIGH | ||
OS Command Injection in GitHub repository yogeshojha/rengine prior to 1.2.0. | ||||
| = 1.0.2 | 9.8 CRITICAL | 7.5 HIGH | ||
Rengine v1.0.2 was discovered to contain a remote code execution (RCE) vulnerability via the yaml configuration function. | ||||
| < 1.0.1 | 5.4 MEDIUM | 3.5 LOW | ||
A Cross Site Scripting (XSS) vulnerability exists in Yogesh Ojha reNgine v1.0 via the Scan Engine name file in the Scan Engine deletion confirmation modal box . . | ||||
| = *, <= 0.5 | 9.8 CRITICAL | 7.5 HIGH | ||
reNgine through 0.5 relies on a predictable directory name. | ||||