Known vulnerabilities in DependencyTrack dependency-track

Vendor: DependencyTrack
Website: https://github.com/DependencyTrack
Total Security Bulletins: 8

Security bulletins (8)

Secuity bulletin Severity Status Published
SB20260423133: XML External Entity injection in dependency-track Low
Patched
23.04.2026
SB2025101034: Information disclosure in dependency-track Medium
Patched
10.10.2025
SB2025022508: Information disclosure in dependency-track Low
Patched
25.02.2025
SB2024120476: Observable discrepancy in dependency-track Medium
Patched
04.12.2024
SB20240624137: XML External Entity injection in dependency-track Low
Patched
24.06.2024
SB2022101180: Inclusion of Sensitive Information in Log Files in dependency-track Low
Patched
11.10.2022
SB2019121637: Multiple vulnerabilities in dependency-track Low
Patched
16.12.2019
SB2019072926: Cross-site scripting in DependencyTrack dependency-track Low
Patched
29.07.2019