All 11 CVE vulnerabilities found in timetracker, with AI-generated Chinese analysis, references, and POCs.
Vendor: anuko
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2023-32308 | SQL Injection Vulnerability in anuko timetracker CWE-89 | 8.2 | High | 2023-05-15 |
| CVE-2023-32306 | Time Tracker has Blind SQL Injection Vulnerability in Reports CWE-89 | 8.8 | High | 2023-05-12 |
| CVE-2023-32066 | Time Tracker has Stored XSS vulnerability in Week View plugin CWE-79 | 5.4 | Medium | 2023-05-09 |
| CVE-2022-24707 | SQL injection in anuko timetracker CWE-89 | 7.4 | High | 2022-02-23 |
| CVE-2022-24708 | Stored XSS vulnerability in anuko/timetracker CWE-79 | 6.5 | Medium | 2022-02-23 |
| CVE-2021-43851 | SQL injection vulnerability in anuko timetracker CWE-89 | 8.1 | High | 2021-12-21 |
| CVE-2021-41156 | Reflected XSS vulnerability CWE-79 | 6.8 | Medium | 2021-10-18 |
| CVE-2021-41139 | Reflected XSS vulnerability in time.php CWE-79 | 8.1 | High | 2021-10-13 |
| CVE-2021-29436 | Cross site request forgery vulnerability CWE-352 | 5.4 | Medium | 2021-04-13 |
| CVE-2021-21352 | Predictable tokens used for password resets CWE-330 | 6.8 | Medium | 2021-03-03 |
| CVE-2020-15255 | CSV injection in Anuko Time Tracker CWE-74 | 8.7 | High | 2020-10-16 |
All 11 known CVE vulnerabilities affecting timetracker with full Chinese analysis, references, and POCs where available.