zongdeiqianxing/rengine

zongdeiqianxing/rengine

Releases0

CVE History

CVEAffectedPublishedCVSS v3CVSS v2
= 1.3.09.8 CRITICAL

Rengine v1.3.0 was discovered to contain a command injection vulnerability via the scan engine function.

< 1.2.09.8 CRITICAL7.5 HIGH

OS Command Injection in GitHub repository yogeshojha/rengine prior to 1.2.0.

= 1.0.29.8 CRITICAL7.5 HIGH

Rengine v1.0.2 was discovered to contain a remote code execution (RCE) vulnerability via the yaml configuration function.

< 1.0.15.4 MEDIUM3.5 LOW

A Cross Site Scripting (XSS) vulnerability exists in Yogesh Ojha reNgine v1.0 via the Scan Engine name file in the Scan Engine deletion confirmation modal box . .

= *, <= 0.59.8 CRITICAL7.5 HIGH

reNgine through 0.5 relies on a predictable directory name.