Security Advisories for org.graylog2:graylog2-server in maven
High
about 1 year ago
Graylog vulnerable to privilege escalation through API tokens
maven
org.graylog2:graylog2-server
High
over 1 year ago
Graylog Allows Session Takeover via Insufficient HTML Sanitization
maven
org.graylog2:graylog2-server
High
over 1 year ago
Graylog Allows Stored Cross-Site Scripting via Files Plugin and API Browser
maven
org.graylog2:graylog2-server
Moderate
over 1 year ago
Graylog's Authenticated HTTP inputs ingest message even if Authorization header is missing or has wrong value
maven
org.graylog2:graylog2-server
Potential
High
over 1 year ago
Graylog concurrent PDF report rendering can leak other users' reports
maven
org.graylog:graylog-parent
Moderate
over 2 years ago
Graylog session fixation vulnerability through cookie injection
maven
org.graylog2:graylog2-server
High
over 2 years ago
Graylog vulnerable to instantiation of arbitrary classes triggered by API request
maven
org.graylog2:graylog2-server
Low
about 3 years ago
Graylog server has partial path traversal vulnerability in Support Bundle feature
maven
org.graylog2:graylog2-server
Low
about 3 years ago
Graylog vulnerable to insecure source port usage for DNS queries
maven
org.graylog2:graylog2-server
Low
about 3 years ago
Graylog user session is still usable after logout
maven
org.graylog2:graylog2-server
Potential