All 5 CVE vulnerabilities found in tgstation-server, with AI-generated Chinese analysis, references, and POCs.
Vendor: tgstation
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-21611 | tgstation-server's role authorization incorrectly OR'd with user's enabled status CWE-285 | 8.8 | High | 2025-01-06 |
| CVE-2024-41799 | tgstation-server's DreamMaker environment files outside the deployment directory can be compiled and ran by insufficiently permissioned users CWE-22 | 8.4 | High | 2024-07-29 |
| CVE-2023-34243 | Windows user name disclosure in TGstation CWE-200 | 5.8 | Medium | 2023-06-08 |
| CVE-2023-33198 | Incorrectly Specified Chat Message Destinations in tgstation-server and DreamMaker API CWE-941 | 6.1 | Medium | 2023-05-30 |
| CVE-2023-32687 | Insufficiently Protected ChatBot Credentials in tgstation-server CWE-522 | 7.7 | High | 2023-05-29 |
All 5 known CVE vulnerabilities affecting tgstation-server with full Chinese analysis, references, and POCs where available.