| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-62604 | MeterSphere logic flaw allows retrieval of arbitrary user information | metersphere | metersphere | - | - | 2025-10-22 15:03:40 | Deep Dive |
| CVE-2025-53639 | Metersphere has SQL Injection Vulnerability in Sorting Field | metersphere | metersphere | - | - | 2025-07-14 20:04:29 | Deep Dive |
| CVE-2024-37161 | MeterSphere front-end editor stores XSS vulnerability | metersphere | metersphere | Medium | 4.0 | 2024-06-11 14:07:13 | Deep Dive |
| CVE-2024-36118 | Unauthorized viewing of workspace test cases in MeterSphere | metersphere | metersphere | Low | 3.5 | 2024-05-30 16:51:19 | Deep Dive |
| CVE-2024-32467 | Meteraphsere vulnerable to unauthorized viewing by workspace members | metersphere | metersphere | Medium | 5.7 | 2024-04-25 16:56:26 | Deep Dive |
| CVE-2023-50267 | MeterSphere horizontal privilege escalation vulnerability of resources in project scope. | metersphere | metersphere | Medium | 4.3 | 2023-12-28 15:13:35 | Deep Dive |
| CVE-2023-41878 | Weak password of selenium VNC in MeterSphere | metersphere | metersphere | Medium | 4.6 | 2023-09-26 22:53:27 | Deep Dive |
| CVE-2023-38494 | The cloud version of the MeterSphere interface leaks some sensitive data without authentication | metersphere | metersphere | Medium | 5.9 | 2023-08-04 15:44:45 | Deep Dive |
| CVE-2023-37461 | Path traversal in metersphere | metersphere | metersphere | Medium | 5.6 | 2023-07-17 19:51:19 | Deep Dive |
| CVE-2023-35937 | Metersphere missing permission check | metersphere | metersphere | Medium | 6.0 | 2023-07-06 13:50:11 | Deep Dive |
| CVE-2023-32699 | MeterSphere denial of service vulnerability | metersphere | metersphere | Medium | 6.5 | 2023-05-30 18:59:26 | Deep Dive |
| CVE-2023-30550 | IDOR vulnerability exists in metersphere | metersphere | metersphere | Medium | 6.8 | 2023-05-04 17:26:13 | Deep Dive |
| CVE-2023-25814 | Arbitrary File Read Vulnerability in metersphere | metersphere | metersphere | High | 7.1 | 2023-03-09 17:10:57 | Deep Dive |
| CVE-2023-25573 | Improper access control to download file in metersphere | metersphere | metersphere | High | 8.6 | 2023-03-09 16:33:41 | Deep Dive |
| CVE-2022-46178 | Path Traversal In MeterSpere allows file upload to any path | metersphere | metersphere | High | 7.4 | 2022-12-29 18:09:39 | Deep Dive |
| CVE-2022-23544 | Server-Side Request Forgery in Metersphere leads to Cross-Site Scripting | metersphere | metersphere | High | 7.2 | 2022-12-27 23:57:42 | Deep Dive |
| CVE-2022-23512 | Metersphere is vulnerable to Path Injection. | metersphere | metersphere | High | 7.7 | 2022-12-14 13:09:37 | Deep Dive |