CVE Browser
Huly Platform through 0.7.426 SSRF via Print Service
Huly Platform - Server-Side Request Forgery via /import Endpoint
hcengineering Huly Platform User Information operations.ts getAccountInfo improper authorization
hcengineering Huly Platform RPC operations.ts getMailboxSecret access control
hcengineering Huly Platform Import Endpoint index.ts server-side request forgery
hcengineering Huly Platform JWT Token token.ts hard-coded key
An arbitrary file upload vulnerability in Huly Platform v0.6.295 allows attackers to execute arbitrary code via uploading a crafted HTML file into chat group.
Server Side Request Forgery (SSRF) vulnerability in hcengineering Huly Platform v.0.6.202 allows attackers to run arbitrary code via upload of crafted SVG file.
Showing 1 to 8 CVEs · page 1