All 3 CVE vulnerabilities found in wsgidav, with AI-generated Chinese analysis, references, and POCs.
Vendor: mar10
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-55509 | WsgiDAV: Blind SQL injection in the MySQL provider CWE-89 | 8.8 | High | 2026-08-28 |
| CVE-2026-48099 | WsgiDAV encoded dot segments can escape filesystem share roots CWE-22 | 7.1 | High | 2026-08-13 |
| CVE-2022-41905 | wsgidav is vulnerable to Cross-Site Scripting (XSS) when directory browsing is enabled CWE-79 | 8.2 | High | 2022-11-11 |
All 3 known CVE vulnerabilities affecting wsgidav with full Chinese analysis, references, and POCs where available.