CVE-2023-2666 – Allocation of Resources Without Limits or Throttling in froxlor/froxlor
https://notcve.org/view.php?id=CVE-2023-2666
Allocation of Resources Without Limits or Throttling in GitHub repository froxlor/froxlor prior to 2.0.16. • https://github.com/froxlor/froxlor/commit/1679675aa1c29d24344dd2e091ff252accb111d6 https://huntr.dev/bounties/0bbdc9d4-d9dc-4490-93ef-0a83b451a20f • CWE-770: Allocation of Resources Without Limits or Throttling •
CVE-2023-2034 – Unrestricted Upload of File with Dangerous Type in froxlor/froxlor
https://notcve.org/view.php?id=CVE-2023-2034
Unrestricted Upload of File with Dangerous Type in GitHub repository froxlor/froxlor prior to 2.0.14. • https://github.com/froxlor/froxlor/commit/f36bc61fc74c85a21c8d31448198b11f96eb3bc6 https://huntr.dev/bounties/aba6beaa-570e-4523-8128-da4d8e374ef6 • CWE-434: Unrestricted Upload of File with Dangerous Type •
CVE-2023-1307 – Authentication Bypass by Primary Weakness in froxlor/froxlor
https://notcve.org/view.php?id=CVE-2023-1307
Authentication Bypass by Primary Weakness in GitHub repository froxlor/froxlor prior to 2.0.13. • https://github.com/froxlor/froxlor/commit/6777fbf229200f4fd566022e186548391219ab23 https://huntr.dev/bounties/5fe85af4-a667-41a9-a00d-f99e07c5e2f1 • CWE-305: Authentication Bypass by Primary Weakness •
CVE-2023-1033 – Cross-Site Request Forgery (CSRF) in froxlor/froxlor
https://notcve.org/view.php?id=CVE-2023-1033
Cross-Site Request Forgery (CSRF) in GitHub repository froxlor/froxlor prior to 2.0.11. • https://github.com/froxlor/froxlor/commit/4003a8d2b60728a77476d1d4f5aa5c635f128950 https://huntr.dev/bounties/ba3cd929-8b60-4d8d-b77d-f28409ecf387 • CWE-352: Cross-Site Request Forgery (CSRF) •
CVE-2023-0877 – Code Injection in froxlor/froxlor
https://notcve.org/view.php?id=CVE-2023-0877
Code Injection in GitHub repository froxlor/froxlor prior to 2.0.11. • https://github.com/froxlor/froxlor/commit/aa48ffca2bcaf7ae57be3b8147bb3138abdab984 https://huntr.dev/bounties/b29cf038-06f1-4fb0-9437-08f2991f92a8 • CWE-94: Improper Control of Generation of Code ('Code Injection') •