Vulnerabilities in Sismics
4 resultsCVE-2022-22114CRITICALTeedy - Reflected Cross-Site Scripting (XSS) in the Search FunctionalityEPSS 1.3%CVE-2022-22115CRITICALTeedy - Stored Cross-Site Scripting (XSS) in Tag NameEPSS 1.0%CVE-2025-11853MEDIUMSismics Teedy API Endpoint file access controlEPSS 0.4%CVE-2025-22963HIGHTeedy through 1.11 allows CSRF for account takeover via POST /api/user/admin.EPSS 0.3%