Known vulnerabilities in BTCPay Server

Vendor: BTCPay
Software: BTCPay Server
Software CPE: cpe:2.3:a:esky33:btcpay_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 5
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting BTCPay Server BTCPay Server is affected by 5 known vulnerabilities: 2 medium, 3 low Critical High Medium Low

Vulnerabilities (5)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU73263 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CWE-79 Low
No
No
1.8.3 13.03.2023 SB2023031317
#VU72327 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CWE-79 Low
No
No
1.7.12 16.02.2023 SB2023021639
#VU71769 - Exposure of sensitive information to an unauthorized actor
CVE-2022-32984
CWE-200 Low
No
No
1.5.4 02.02.2023 SB2023020242
#VU57964 - Permissions, Privileges, and Access Controls
CWE-264 Medium
No
No
1.3.2 05.11.2021 SB2021110511
#VU51844 - Exposure of sensitive information to an unauthorized actor
CVE-2021-29249
CWE-200 Medium
No
No
1.0.6.0 01.04.2021 SB2021040122