VendorsAutolab Projectautolaball versions
Vulnerabilities

Autolab Project Autolab

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2022-41955
Autolab is vulnerable to remote code execution (RCE) via MOSS functionality
Published 2023-01-14 · Modified
8.8EPSS 0.015
CVE-2024-49376
Autolab Has Misconfigured Reset Password Permissions
Published 2024-10-25 · Analyzed
8.8EPSS 0.005
CVE-2022-0936
Cross-site Scripting (XSS) - Stored in autolab/autolab
Published 2022-04-11 · Modified
7.6EPSS 0.007
CVE-2023-32676
Autolab tar slip in Install Assessment functionality (`GHSL-2023-081`)
Published 2023-05-26 · Modified
7.2EPSS 0.009
CVE-2023-32317
Autolab tar slip in cheat checker functionality (`GHSL-2023-082`)
Published 2023-05-26 · Modified
7.2EPSS 0.009
CVE-2024-53258
download_all_submissions allows student to download another student's submissions in Autolab
Published 2024-11-25 · Analyzed
7.1EPSS 0.005
CVE-2024-53260
Course Roster vulnerable to CSV Injection in Autolab
Published 2024-11-27 · Analyzed
6.8EPSS 0.005
CVE-2022-41956
Autolab is vulnerable to file disclosure via remote handin feature
Published 2023-01-14 · Modified
6.5EPSS 0.018
CVE-2023-44395
Autolab has Path Traversal vulnerability in Assessment functionality
Published 2024-01-22 · Modified
6.5EPSS 0.006
CVE-2024-52585
Autolab has HTML Injection Vulnerability
Published 2024-11-18 · Analyzed
5.4EPSS 0.003
CVE-2024-52584
Autolab has vulnerable submission endpoints
Published 2024-11-18 · Analyzed
5.4EPSS 0.003