Roundup-Tracker
13 known vulnerabilities
Top Products
Roundup before 2.4.0 allows XSS via JavaScript in PDF, XML, and SVG documents.
Roundup before 2.4.0 allows XSS via a SCRIPT element in an HTTP Referer header.
In Roundup before 2.4.0, classhelpers (_generic.help.html) allow XSS.
Multiple cross-site scripting (XSS) vulnerabilities in Roundup before 1.4.20 allow remote attackers to inject arbitrary
Roundup 1.6 allows XSS via the URI because frontends/roundup.cgi and roundup/cgi/wsgi_handler.py mishandle 404 errors.
schema.py in Roundup before 1.5.1 does not properly limit attributes included in default user permissions, which might a
Frequently Asked Questions
How many CVEs affect Roundup-Tracker?
Roundup-Tracker has 13 CVE records in our database, including 0 critical and 0 high severity vulnerabilities.
What are the most severe Roundup-Tracker vulnerabilities?
Roundup-Tracker has 0 critical severity (CVSS 9.0+) and 0 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Roundup-Tracker vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Roundup-Tracker products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Roundup-Tracker Vulnerabilities
CyberStrike scans your infrastructure for Roundup-Tracker vulnerabilities and provides real-time remediation guidance.
Get Started