All 8 CVE vulnerabilities found in BookStack, with AI-generated Chinese analysis, references, and POCs.
Vendor: BookStackApp
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2026-5484 | BookStackApp BookStack Chapter Export ExportFormatter.php chapterToMarkdown access control CWE-284 | 5.3 | Medium | 2026-04-03 |
| CVE-2023-6199 | Book Stack v23.10.2 - LFR via Blind SSRF CWE-918 | 6.5 | Medium | 2023-11-20 |
| CVE-2022-40690 | BookStack 跨站脚本漏洞 | 5.4 | - | 2022-10-24 |
| CVE-2020-26260 | Server Side Request Forgery in BookStack CWE-74 | 6.4 | Medium | 2020-12-09 |
| CVE-2020-26211 | Cross-Site Scripting in BookStack CWE-79 | 7.7 | High | 2020-11-03 |
| CVE-2020-26210 | Cross-Site Scripting in BookStack CWE-79 | 7.7 | High | 2020-11-03 |
| CVE-2020-11055 | Cross-site Scripting in BookStack CWE-79 | 6.3 | Medium | 2020-05-07 |
| CVE-2020-5256 | Remote Code Execution Through Image Uploads in BookStack CWE-95 | 7.9 | High | 2020-03-09 |
All 8 known CVE vulnerabilities affecting BookStack with full Chinese analysis, references, and POCs where available.