← Back

Proget

proget

Vendor: Inedo • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Inedo
1Proget
Nov 21, 2024
Sep 26, 2018
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Inedo ProGet before 5.0 Beta5 has CSRF, allowing an attacker to change advanced settings.
1Inedo
1Proget
May 13, 2026
Sep 30, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Inedo ProGet before 4.7.14 does not properly address dangerous package IDs during package addition, aka PG-1060.