inedo proget CVE Vulnerabilities (3)

CVEs: 3 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting inedo proget (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2025-47244 Inedo ProGet through 2024.22 allows remote attackers to reach restricted functionality through the C# reflection layer, as demonstrated by causing a denial of service (when an attacker executes a loop calling RestartWeb) or obtaining potentially sensitive information. Exploitation can occur if Anonymous access is enabled, or if there is a successful CSRF attack. [email protected] 7.3 0.37% 2025-05-03 2026-06-17
CVE-2017-15608 Inedo ProGet before 5.0 Beta5 has CSRF, allowing an attacker to change advanced settings. [email protected] 6.5 0.41% 2018-09-26 2026-06-16
CVE-2017-14944 Inedo ProGet before 4.7.14 does not properly address dangerous package IDs during package addition, aka PG-1060. [email protected] 7.5 0.86% 2017-09-29 2026-06-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence