Skip to main content

Vendor/product archive

joplinapp / joplin CVEs

Beta · best-effort

4 CVEs tagged to joplinapp / joplin1 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2026-22810

Published May 18, 2026

Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks. Versions prior to 3.5.7 contain a path traversal vulnerability in the imp…

CVSS 8.2 · High
evidence mentions
5
Buzz score
22.9
Vendor/product tagsBeta · best-effort

CVE-2022-35131

Published Jul 25, 2022

Joplin v2.8.8 allows attackers to execute arbitrary commands via a crafted payload injected into the Node titles.

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-23431

Published Aug 24, 2021

The package joplin before 2.3.2 are vulnerable to Cross-site Request Forgery (CSRF) due to missing CSRF checks in various forms.

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1