Known vulnerabilities in sentry

Vendor: Sentry
Software: sentry
Software CPE: cpe:2.3:a:getsentry:sentry:*:*:*:*:*:*:*:*
Total vulnerabilities: 21
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting sentry sentry is affected by 21 known vulnerabilities: 6 high, 8 medium, 7 low Critical High Medium Low

Vulnerabilities (21)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU139937 - Improper Authentication
CWE-287 High
No
No
26.7.1 28.07.2026 SB20260728118
#VU138420 - Deserialization of Untrusted Data
CWE-502 Medium
No
No
26.7.0 20.07.2026 SB2026072019
#VU133358 - Inefficient Regular Expression Complexity
CVE-2026-52794
CWE-1333 Medium
No
No
26.5.2 04.06.2026 SB2026060473
#VU126925 - Authentication Bypass by Spoofing
CVE-2026-42354
CWE-290 High
No
No
26.4.1 23.04.2026 SB2026042342
#VU126924 - Improper Authentication
CVE-2026-27197
CWE-287 High
No
No
26.2.0 23.04.2026 SB2026042341
#VU113022 - Authentication Bypass Using an Alternate Path or Channel
CVE-2025-53099
CWE-288 High
No
No
25.5.0 17.07.2025 SB2025071761
#VU126923 - Improper Authentication
CVE-2025-22146
CWE-287 High
No
No
25.1.0 15.01.2025 SB20250115109
#VU100911 - Exposure of sensitive information to an unauthorized actor
CVE-2024-53253
CWE-200 Medium
No
No
- 25.11.2024 SB2024112539
#VU126921 - Authorization Bypass Through User-Controlled Key
CVE-2024-45605
CWE-639 Low
No
No
24.9.0 17.09.2024 SB2024091789
#VU126922 - Authorization Bypass Through User-Controlled Key
CVE-2024-45606
CWE-639 Medium
No
No
24.9.0 17.09.2024 SB2024091789
#VU94750 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-41656
CWE-79 Low
No
No
24.7.1 26.07.2024 SB2024072614
#VU90717 - Information Exposure Through Log Files
CVE-2024-35196
CWE-532 Medium
No
No
24.5.0 03.06.2024 SB2024060316
#VU88826 - Information Exposure Through Log Files
CVE-2024-32474
CWE-532 Low
No
No
24.4.1 19.04.2024 SB2024041901
#VU86294 - Server-Side Request Forgery (SSRF)
CVE-2024-24829
CWE-918 Medium
No
No
24.1.2 09.02.2024 SB2024020915
#VU126920 - Improper Authentication
CVE-2023-39531
CWE-287 Low
No
No
23.7.2 09.08.2023 SB2023080725
#VU79013 - Permissions, Privileges, and Access Controls
CVE-2023-39349
CWE-264 Medium
No
No
23.7.2 07.08.2023 SB2023080725
#VU126919 - Improper Authorization
CVE-2023-36826
CWE-285 Low
No
No
23.5.2 25.07.2023 SB2023072576
#VU78268 - Overly Permissive Cross-domain Whitelist
CVE-2023-36829
CWE-942 Low
No
No
23.6.2 15.07.2023 SB2023071509
#VU126918 - Improper Access Control
CVE-2022-23485
CWE-284 Low
No
No
22.11.0 10.12.2022 SB2022121027
#VU49387 - URL Redirection to Untrusted Site ('Open Redirect')
CWE-601 Medium
No
No
20.12.1 11.01.2021 SB2021011112


Showing elements 1 - 20 out of 21