CVE Browser
Search and filter CVEs by severity, ecosystem, EPSS score, and more.
Page 1
SQLBot through 1.10.1 Improper Access Control via Dashboard Update
SQLBot: Second-Order SQL Injection via Excel Datasource Leading to Remote Command Execution
Stored XSS via SVG Upload
SQLBot: Authenticated SQL Injection in previewData Resulting in Arbitrary File Read
SQLBot: Arbitrary File Write via parseExcel Leading to Code Execution Through Alembic Import Processing
SQLBot 1.10.0 SQText Dashboard Component Stored XSS via v-html
SQLBot: Unauthorized Access Vulnerability
SQLBot prompt injection allows arbitrary SQL execution and remote code execution
Dataease SQLbot Elasticsearch es_engine.py get_es_data_by_http server-side request forgery
SQLBot: RCE via SQL Injection in Excel Upload Endpoint
SQLBot: SSRF to Arbitrary File Read (AFR) via Rogue MySQL
SQLBot: Remote Code Execution via Terminology Poisoning
Dataease SQLBot JWT Token auth.py validateEmbedded signature verification
Dataease SQLBot API Endpoint assistant.py access control
SQLBot uploadExcel Endpoint has Unauthenticated Arbitrary File Upload vulnerability
Showing 1 to 15 CVEs · page 1