Jetbrains Ktor 1.5.4

CPE Details

Jetbrains Ktor 1.5.4
1.5.4
2021-11-09
17h46 +00:00
2021-11-09
19h42 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:jetbrains:ktor:1.5.4:*:*:*:*:*:*:*

Informations

Vendor

jetbrains

Product

ktor

Version

1.5.4

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-49580 2024-10-17 13h00 +00:00 In JetBrains Ktor before 2.3.13 improper caching in HttpCache Plugin could lead to response information disclosure
5.3
Medium
CVE-2023-45613 2023-10-09 10h20 +00:00 In JetBrains Ktor before 2.3.5 server certificates were not verified
9.1
Critical
CVE-2023-45612 2023-10-09 10h20 +00:00 In JetBrains Ktor before 2.3.5 default configuration of ContentNegotiation with XML format was vulnerable to XXE
9.8
Critical
CVE-2023-34339 2023-06-01 18h12 +00:00 In JetBrains Ktor before 2.3.1 headers containing authentication data could be added to the exception's message
3.3
Low
CVE-2022-48476 2023-04-24 12h21 +00:00 In JetBrains Ktor before 2.3.0 path traversal in the `resolveResource` method was possible
7.5
High
CVE-2022-38180 2022-08-12 07h55 +00:00 In JetBrains Ktor before 2.1.0 the wrong authentication provider could be selected in some cases
6.5
Medium
CVE-2022-38179 2022-08-12 07h55 +00:00 JetBrains Ktor before 2.1.0 was vulnerable to the Reflect File Download attack
6.1
Medium
CVE-2022-29035 2022-04-11 16h12 +00:00 In JetBrains Ktor Native before version 2.0.0 random values used for nonce generation weren't using SecureRandom implementations
3.3
Low
CVE-2021-43203 2021-11-09 13h52 +00:00 In JetBrains Ktor before 1.6.4, nonce verification during the OAuth2 authentication process is implemented improperly.
7.5
High