Vulnerabilities in mealie-recipes
7 resultsVexday analysis
Mealie-recipes apresenta 4 vulnerabilidades catalogadas, todas com severidade baixa a média, sem registros de exploração ativa conhecida (KEV). A fraqueza dominante é CWE-400 (Uncontrolled Resource Consumption), indicando potencial para negação de serviço. O risco é estável, sem novas exposições nos últimos 90 dias.
CVE-2024-31992MEDIUMMealie contains a DoS vulnerability in recipe importerEPSS 0.7%CVE-2026-94028MEDIUMmealie-recipes Mealie Recipe Action Trigger controller_group_recipe_actions.py payload.model_dump server-side request forgeryEPSS 0.4%CVE-2024-31993MEDIUMMealie vulnerable to a GET-based SSRF in recipe image importer (GHSL-2023-227)EPSS 0.4%CVE-2026-93736MEDIUMMealie before 3.21.0 Information Disclosure via Ratings EndpointEPSS 0.4%CVE-2024-31991MEDIUMMealie vulnerable to a GET-based SSRF in recipe importer (GHSL-2023-225)EPSS 0.3%CVE-2024-31994MEDIUMMealie vulnerable to a DoS in recipe image importer (GHSL-2023-228)EPSS 0.3%CVE-2026-71210MEDIUMmealie - DNS-Rebinding TOCTOU in SSRF Guard Allows Internal Network and Cloud Metadata AccessEPSS 0.2%