Known vulnerabilities in DITA Open Toolkit
Vendor:
dita-ot.org
Software:
DITA Open Toolkit
Software CPE:
cpe:2.3:a:dita-ot.org:dita_open_toolkit:*:*:*:*:*:*:*:*
Website:
https://www.dita-ot.org/
Total vulnerabilities:
5
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
4.4
4.3.5
4.3.4
4.3.3
4.3.2
4.3.1
4.3
4.2.4
4.2.3
4.2.2
4.2.1
4.2
4.1.2
4.1.1
4.1
4.0.2
4.0.1
4.0
3.7.4
3.7.3
3.7.2
3.7.1
3.7
3.6.1
3.6
3.5.4
3.5.3
3.5.2
3.5.1
3.5
3.4.1
3.4
3.3.4
3.3.3
3.3.2
3.3.1
3.3
3.2.2
3.2.1
3.2
3.1.3
3.1.2
3.1.1
3.1
3.0.4
3.0.3
3.0.2
3.0.1
3.0
2.5.4
2.5.3
2.5.2
2.5.1
2.5
2.4.6
2.4.5
2.4.4
2.4.3
2.4.2
2.4.1
2.4
2.3.3
2.3.2
2.3.1
2.3
2.2.5
2.2.4
2.2.3
2.2.2
2.2.1
2.2
2.1.2
2.1.1
2.1
2.0.1
2.0
1.8.5
1.7.5
1.6.3
1.5.4
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU29131 - Deserialization of Untrusted Data CVE-2020-14061 |
CWE-502 | High | 3.5.1 | 18.06.2020 |
SB2020061806 SB2020070320 SB2020073033 and 15 more |
||
| #VU29130 - Deserialization of Untrusted Data CVE-2020-14062 |
CWE-502 | High | 3.5.1 | 18.06.2020 |
SB2020061806 SB2020070320 SB2020073033 and 14 more |
||
| #VU29129 - Deserialization of Untrusted Data CVE-2020-14060 |
CWE-502 | High | 3.5.1 | 18.06.2020 |
SB2020061806 SB2020070320 SB2020073033 and 15 more |
||
| #VU29128 - Deserialization of Untrusted Data CVE-2020-14195 |
CWE-502 | High | 3.5.1 | 18.06.2020 |
SB2020061806 SB2020070320 SB2020102703 and 24 more |
||
| #VU27924 - Incorrect Default Permissions CVE-2020-1945 |
CWE-276 | Low | 3.5.1 | 15.05.2020 |
SB2020051501 SB2020052114 SB2020060205 and 48 more |