← Back

Logpoint

logpoint

23 CVEs • 4 products

Products (4)

Click to collapse
Toggle
Siem
siem
Soar
soar

CVEs (23)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Logpoint
1Siem
Jun 17, 2026
Apr 27, 2024
N/A· v4
8.8 HIGH· v3
N/A· v2
An issue was discovered in Logpoint before 7.1.1. Template injection was seen in the search template. The search template uses jinja templating for generating dynamic data. This could be abused to achieve code execution....Show more
An issue was discovered in Logpoint before 7.1.1. Template injection was seen in the search template. The search template uses jinja templating for generating dynamic data. This could be abused to achieve code execution. Any user with access to create a search template can leverage this to execute code as the loginspect user.Show less
1Logpoint
1Siem
Jun 17, 2026
Mar 22, 2024
N/A· v4
5.4 MEDIUM· v3
N/A· v2
Logpoint before 7.1.0 allows Self-XSS on the LDAP authentication page via the username to the LDAP login form.
1Logpoint
1Siem
Jun 17, 2026
Feb 3, 2024
N/A· v4
5.4 MEDIUM· v3
N/A· v2
The Jinja templating in Logpoint SIEM 6.10.0 through 7.x before 7.3.0 does not correctly sanitize log data being displayed when using a custom Jinja template in the Alert view. A remote attacker can craft a cross-site sc...Show more
The Jinja templating in Logpoint SIEM 6.10.0 through 7.x before 7.3.0 does not correctly sanitize log data being displayed when using a custom Jinja template in the Alert view. A remote attacker can craft a cross-site scripting (XSS) payload and send it to any system or device that sends logs to the SIEM. If an alert is created, the payload will execute upon the alert data being viewed with that template, which can lead to sensitive data disclosure.Show less