Vulnerabilities in GibbonEdu
4 resultsVexday analysis
GibbonEdu apresenta baixo volume de risco com apenas 1 vulnerabilidade catalogada, sem atividade de exploração conhecida ou severidade crítica associada. A fraqueza identificada (CWE-352 - Cross-Site Request Forgery) é de natureza clássica e não representa exposição recente, indicando perfil de risco contido para este fornecedor.
CVE-2026-8208HIGHGibbon versions before v30.0.01 are affected by a local file inclusion vulnerability resulting in RCE by changing the report archive directoEPSS 0.3%CVE-2026-8209MEDIUMGibbon versions before v30.0.01 are affected by a path traversal vulnerability resulting in DOS by attempting extraction of web application EPSS 0.3%CVE-2026-8207HIGHGibbon versions before v30.0.01 are affected by an authenticated SQL Injection vulnerability by abusing the Tracking/graphing https://githuEPSS 0.2%CVE-2025-26211LOWGibbon before 29.0.00 allows CSRF.EPSS 0.2%