All 9 CVE vulnerabilities found in sourcegraph, with AI-generated Chinese analysis, references, and POCs.
Vendor: sourcegraph
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2022-41942 | Sourcegraph vulnerable to Comand Injection via gitserver CWE-20 | 7.9 | High | 2022-11-22 |
| CVE-2022-41943 | Incorrect default permissions found in Sourcegraph CWE-276 | 9.0 | Critical | 2022-11-22 |
| CVE-2022-31155 | Unauthorized overwriting of saved searches in Sourcegraph CWE-863 | 4.3 | Medium | 2022-08-01 |
| CVE-2022-31154 | Indirect Object Access in Sourcegraph Code Monitoring CWE-863 | 6.4 | Medium | 2022-08-01 |
| CVE-2022-29171 | Remote Code Execution in sourcegraph CWE-74 | 6.6 | Medium | 2022-05-05 |
| CVE-2022-23642 | Code Injection in Sourcegraph CWE-94 | 8.8 | High | 2022-02-18 |
| CVE-2022-23643 | Side-channel attack in Sourcegraph Code Monitors CWE-200 | 6.5 | Medium | 2022-02-15 |
| CVE-2021-43823 | Side-channel attack in Sourcegraph CWE-200 | 6.5 | Medium | 2021-12-13 |
| CVE-2021-32787 | Low risk information disclosure in Sourcegraph CWE-200 | 3.1 | Low | 2021-08-02 |
All 9 known CVE vulnerabilities affecting sourcegraph with full Chinese analysis, references, and POCs where available.