Search CVE reports


Toggle filters

11 – 13 of 13 results


CVE-2022-25803

Medium priority

Some fixes available 1 of 6

Best Practical Request Tracker (RT) before 5.0.3 has an Open Redirect via a ticket search.

1 affected package

request-tracker5

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
request-tracker5 Not affected Fixed Not in release Not in release
Show less packages

CVE-2022-25802

Medium priority

Some fixes available 6 of 14

Best Practical Request Tracker (RT) before 4.4.6 and 5.x before 5.0.3 allows XSS via a crafted content type for an attachment.

2 affected packages

request-tracker5, request-tracker4

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
request-tracker5 Not affected Fixed Not in release Not in release
request-tracker4 Not affected Fixed Fixed Fixed
Show less packages

CVE-2021-38562

Low priority

Some fixes available 10 of 18

Best Practical Request Tracker (RT) 4.2 before 4.2.17, 4.4 before 4.4.5, and 5.0 before 5.0.2 allows sensitive information disclosure via a timing attack against lib/RT/REST2/Middleware/Auth.pm.

2 affected packages

request-tracker5, request-tracker4

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
request-tracker5 Not affected Fixed Not in release Not in release
request-tracker4 Fixed Fixed Fixed Fixed
Show less packages