All 7 CVE vulnerabilities found in Casdoor, with AI-generated Chinese analysis, references, and POCs.
Vendor: n/a
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-5469 | Casdoor Webhook URL server-side request forgery CWE-918 | 4.7 | Medium | 2026-04-03 |
| CVE-2026-5468 | Casdoor dangerouslySetInnerHTML cross site scripting CWE-79 | 3.5 | Low | 2026-04-03 |
| CVE-2026-5467 | Casdoor OAuth Authorization Request redirect CWE-601 | 4.3 | Medium | 2026-04-03 |
| CVE-2025-4210 | Casdoor SCIM User Creation Endpoint scim.go HandleScim authorization CWE-639 | 7.3 | High | 2025-05-02 |
| CVE-2024-41658 | GHSL-2024-036: Reflected XSS in QrCodePage.js CWE-79 | 6.1 | Medium | 2024-08-20 |
| CVE-2024-41657 | GHSL-2024-035: Casdoor CORS misconfiguration CWE-942 | 8.1 | High | 2024-08-20 |
| CVE-2024-5587 | Casdoor Configuration File app.conf file access CWE-552 | 5.3 | Medium | 2024-06-02 |
All 7 known CVE vulnerabilities affecting Casdoor with full Chinese analysis, references, and POCs where available.