| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-45298 | Disabled user can bypass lockout by requesting password reset in wiki.js | requarks | wiki | Medium | 4.3 | 2024-09-18 17:05:59 | Deep Dive |
| CVE-2024-34710 | Wiki.js Stored XSS through Client Side Template Injection | requarks | wiki | High | 7.1 | 2024-05-20 21:59:17 | Deep Dive |
| CVE-2022-1681 | Authentication Bypass Using an Alternate Path or Channel in requarks/wiki | requarks | requarks/wiki | 高危 | - | 2022-05-12 07:45:14 | Deep Dive |
| CVE-2022-23654 | Improper write access check in Requarks/wiki | Requarks | wiki | High | 8.1 | 2022-02-22 20:05:11 | Deep Dive |
| CVE-2021-25993 | Requarks wiki.js - Stored Cross-Site Scripting (XSS) in markdown editor | Requarks | wiki | Medium | 5.4 | 2021-12-29 16:50:10 | Deep Dive |
| CVE-2021-43855 | Stored XSS via SVG in Requarks/wiki | Requarks | wiki | High | 8.2 | 2021-12-27 18:05:16 | Deep Dive |
| CVE-2021-43856 | Stored XSS in non-image uploads in Requarks/wiki | Requarks | wiki | High | 8.2 | 2021-12-27 18:05:10 | Deep Dive |
| CVE-2021-43842 | Stored XSS via SVG file upload in Wiki.js | Requarks | wiki | Medium | 5.4 | 2021-12-20 22:30:11 | Deep Dive |
| CVE-2021-43800 | Asset directory traversal with some storage modules on Windows | Requarks | wiki | High | 7.5 | 2021-12-06 18:50:10 | Deep Dive |
| CVE-2021-21383 | XSS in Wiki.js | Requarks | wiki | High | 7.6 | 2021-03-18 17:10:16 | Deep Dive |
| CVE-2020-15274 | Stored XSS via search result in Wiki.js | Requarks | wiki.js | Medium | 5.8 | 2020-10-26 18:35:19 | Deep Dive |
| CVE-2020-15236 | Directory Traversal in Wiki.js | Requarks | wiki | High | 8.6 | 2020-10-05 14:55:12 | Deep Dive |
| CVE-2020-4052 | Stored XSS through template injection in Wiki.js | Requarks.io | Wiki.js | Medium | 6.3 | 2020-06-16 21:55:15 | Deep Dive |
| CVE-2020-11051 | XSS in Wiki.js | Requarks | Wiki.js | Medium | 6.9 | 2020-05-05 20:45:12 | Deep Dive |