oceanicsoft CVE Vulnerabilities & CVE List (5)

Products (CPE): — CVEs: 5

oceanicsoft vulnerability overview

Aggregates CVE and security vulnerability intelligence across all oceanicsoft-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk sql injection and vendor risk cross-site scripting and related problems; some flaws may lead to vendor impact data exposure, affecting vendor surface production workloads scenarios.

Vulnerability distribution trend (last 24 months)

Showing 15 of 5 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2024-8644 Cleartext Storage of Sensitive Information in a Cookie vulnerability in Oceanic Software ValeApp allows Protocol Manipulation, : JSON Hijacking (aka JavaScript Hijacking). This issue affects ValeApp: before v2.0.0. [email protected] 9.3 0.05% 2024-09-27 2026-06-02
CVE-2024-8643 Session Fixation vulnerability in Oceanic Software ValeApp allows Brute Force, Session Hijacking. This issue affects ValeApp: before v2.0.0. [email protected] 9.3 0.18% 2024-09-27 2026-06-02
CVE-2024-8609 Insertion of Sensitive Information into Log File vulnerability in Oceanic Software ValeApp allows Query System for Information. This issue affects ValeApp: before v2.0.0. [email protected] 8.8 0.07% 2024-09-27 2026-06-02
CVE-2024-8608 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Oceanic Software ValeApp allows Stored XSS. This issue affects ValeApp: before v2.0.0. [email protected] 7.2 0.12% 2024-09-27 2026-06-02
CVE-2024-8607 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Oceanic Software ValeApp allows SQL Injection. This issue affects ValeApp: before v2.0.0. [email protected] 8.7 0.06% 2024-09-27 2026-06-02
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence