Where
-Infinity
0

Apereo CAS ClientImproper Validation of Certificate in CAS Client

Risk 56
Severity
7.4
First published (updated )

Apereo CASApereo CAS 7.3.0 < 8.0.0-RC6 - AES-GCM Nonce Reuse Information Disclosure

Risk 67
Severity
9.3
First published (updated )

Xerte Xerte Online ToolkitsXerte Online Toolkits <= 3.14 Unauthenticated Template Import Arbitrary File Upload Leading to Remote Code Execution

Risk 61
Severity
9.3
EPSS
0.64%
First published (updated )

Apereo OpencastOpencast's editor accidentally publishes videos/overwrites publications #1626

Risk 22
Severity
4.3
First published (updated )

Apereo OpencastOpencast Paella Player 7 vulnerable to Cross-Site-Scripting

Risk 34
Severity
5.4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

maven/org.opencastproject:opencast-user-interface-configurationOpencast has a partial path traversal vulnerability in UI config

Risk 27
Severity
5.3
First published (updated )

maven/org.opencastproject:opencast-publication-service-oaipmh-remoteOpencast still publishes global system account credentials

Risk 38
Severity
6.5
First published (updated )

Apereo CASApereo CAS CasConfigurationMetadataServerController.java redos

Risk 31
Severity
7.5
EPSS
0.04%
First published (updated )

Apereo CASApereo CAS ResponseEntity redos

Risk 17
Severity
5.1
EPSS
0.05%
First published (updated )

Apereo CASApereo CAS Groovy Code RegisteredServiceSimpleFormController.java saveService code injection

Risk 51
Severity
7.5
EPSS
0.05%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

maven/org.opencastproject:opencast-elasticsearch-implSearching Opencast may cause a denial of service

Risk 45
Severity
7.5
First published (updated )

Apereo Central Authentication ServiceApereo CAS 2FA login improper authentication

Risk 86
Severity
9.8
First published (updated )

Apereo Central Authentication ServiceApereo CAS login session expiration

Risk 75
Severity
8.1
First published (updated )

Apereo CASApereo CAS login redirect

Risk 34
Severity
5.4
First published (updated )

Unknown CASCAS <= 1.0.0 - Unauthenticated SSRF

Risk 47
Severity
9.1
EPSS
0.04%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apereo Central Authentication ServiceMFA bypass in Apereo CAS

Risk 86
Severity
9.8
First published (updated )

Apereo CASCredentials leaks for LDAP authentication in Apereo CAS - CVE-2023-28857

Risk 65
First published (updated )

Apereo Central Authentication ServiceGHSL-2023-009: Credentials leaks for LDAP authentication in Apereo CAS - CVE-2023-28857

Risk 45
Severity
7.5
First published (updated )

Apereo OpencastOpencast Authenticated OpenRedirect Vulnerability

Risk 38
Severity
6.1
First published (updated )

Fedoraproject FedoraService Hostname Discovery Exploitation in phpCAS

Risk 74
Severity
8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apereo OpencastLimited Authentication Bypass for Media Files in Opencast

Risk 34
Severity
5.5
First published (updated )

maven/org.opencastproject:opencast-commonInfoleak

Risk 45
Severity
7.5
First published (updated )

Apereo OpencastFiles Accessible to External Parties in Opencast

Risk 82
Severity
9.9
First published (updated )

Apereo OpencastHTTP Method Spoofing in Opencast

Risk 69
Severity
7.5
First published (updated )

Apereo Central Authentication ServiceXSS

Risk 38
Severity
6.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apereo OpencastOpencast vulnerable to billion laughs attack (XML bomb)

Risk 60
Severity
8.1
First published (updated )

Apereo OpencastRemoving access may not effect published series

Risk 34
Severity
5.5
First published (updated )

Apereo OpencastDisabled Hostname Verification in OpenCast

Risk 29
Severity
4.8
First published (updated )

Apereo Central Authentication ServiceApereo CAS 5.3.x before 5.3.16, 6.x before 6.1.7.2, 6.2.x before 6.2.4, and 6.3.x before 6.3.0-RC4 m…

Risk 43
Severity
7.5
First published (updated )

Apereo OpencastAuthentication Bypass For Endpoints With Anonymous Access in OpenCast

Risk 73
Severity
10
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203