Filter
-Infinity
0

ONLYOFFICEONLYOFFICE Docs through 7.3 on certain Linux distributions allows local users to gain privileges via…

7.8
First published (updated )

ONLYOFFICEONLYOFFICE DocSpace <= 2.1.1 - Authenticated (Contributor+) Stored Cross-Site Scripting

First published (updated )

ONLYOFFICEPath Traversal

First published (updated )

ONLYOFFICEONLYOFFICE Docs <= 2.0.0 - Authenticated (Contributor+) Stored Cross-Site Scripting

First published (updated )

ONLYOFFICEUse After Free

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ONLYOFFICEAn out of bounds memory access vulnerability in ONLYOFFICE DocumentServer 4.0.3 through 7.3.2 allows…

First published (updated )

ONLYOFFICEMemory Exhaustion vulnerability in ONLYOFFICE Document Server 4.0.3 through 7.3.2 allows remote atta…

7.5
First published (updated )

ONLYOFFICEXSS

First published (updated )

ONLYOFFICEXSS

First published (updated )

ONLYOFFICEInput Validation

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ONLYOFFICEInput Validation

First published (updated )

ONLYOFFICESQL Injection

First published (updated )

ONLYOFFICEAn issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx…

First published (updated )

ONLYOFFICESSRF

8.1
First published (updated )

ONLYOFFICEInput Validation

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ONLYOFFICEXSS

First published (updated )

ONLYOFFICEONLYOFFICE all versions as of 2021-11-08 is affected by Incorrect Access Control. An authentication …

7.5
First published (updated )

ONLYOFFICEONLYOFFICE all versions as of 2021-11-08 is affected by Incorrect Access Control. Signed document do…

7.5
First published (updated )

ONLYOFFICEONLYOFFICE all versions as of 2021-11-08 is affected by Incorrect Access Control. An attacker can au…

First published (updated )

OnlyOffice Google TranslateThe Translate plugin 6.1.x through 6.3.x before 6.3.0.72 for ONLYOFFICE Document Server lacks escape…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ONLYOFFICEBuffer Overflow

First published (updated )

ONLYOFFICEAn improper binary stream data handling issue was found in the [core] module of ONLYOFFICE DocumentS…

7.8
First published (updated )

ONLYOFFICEPath Traversal

First published (updated )

ONLYOFFICEA file extension handling issue was found in [core] module of ONLYOFFICE DocumentServer v4.2.0.236-v…

First published (updated )

ONLYOFFICEA file extension handling issue was found in [core] module of ONLYOFFICE DocumentServer v4.0.0-9-v5.…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ONLYOFFICEPath Traversal

First published (updated )

ONLYOFFICEONLYOFFICE Workspace Search Stored XSS

First published (updated )

ONLYOFFICE Document ServerOnlyoffice Document Server v6.0.0 and below and Core 6.1.0.26 and below were discovered to contain a…

First published (updated )

ONLYOFFICE Document ServerOnlyoffice Document Server v6.0.0 and below and Core 6.1.0.26 and below were discovered to contain a…

First published (updated )

ONLYOFFICEXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203