Skip to main content

Vendor archive

duraspace CVEs

Beta · best-effort

10 CVEs tagged to vendor duraspace0 Critical, 8 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2022-31195

Published Aug 1, 2022

DSpace open source software is a repository application which provides durable access to digital resources. In affected versions the ItemImportServiceImpl is vulnerable to a path…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2022-31194

Published Aug 1, 2022

DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace. The JSPUI resumable upload i…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2022-31193

Published Aug 1, 2022

DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace. The JSPUI controlled vocabul…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2022-31192

Published Aug 1, 2022

DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace. The JSPUI "Request a Copy" f…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2022-31191

Published Aug 1, 2022

DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace. The JSPUI spellcheck "Did yo…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2022-31189

Published Aug 1, 2022

DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace. When an "Internal System Err…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-31190

Published Aug 1, 2022

DSpace open source software is a repository application which provides durable access to digital resources. dspace-xmlui is a UI component for DSpace. In affected versions metadat…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-41189

Published Oct 29, 2021

DSpace is an open source turnkey repository application. In version 7.0, any community or collection administrator can escalate their permission up to become system administrator.…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2019-6986

Published Jan 28, 2019

SPARQL Injection in VIVO Vitro v1.10.0 allows a remote attacker to execute arbitrary SPARQL via the uri parameter, leading to a regular expression denial of service (ReDoS), as de…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10726

Published Jul 10, 2018

The XMLUI feature in DSpace before 3.6, 4.x before 4.5, and 5.x before 5.5 allows directory traversal via the themes/ path in an attack with two or more arbitrary characters and a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-10 of 10 CVEsPage 1 of 1