mantisbt/mantisbt vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2026-33052Mediummantisbt/mantisbt: MantisBT Has Authorization Bypass in Global Profile CreationCVE-2026-33548Highmantisbt/mantisbt: MantisBT has Stored HTML Injection/XSS when displaying Tags in TimelineCVE-2026-33517Highmantisbt/mantisbt: MantisBT Vulnerable to Stored HTML Injection in Tag Delete ConfirmationCVE-2026-30849Criticalmantisbt/mantisbt: MantisBT is vulnerable to authentication bypass through the SOAP API on MySQLCVE-2025-62520Mediummantisbt/mantisbt: MantisBT unauthorized disclosure of private project column configurationCVE-2025-55155Mediummantisbt/mantisbt: MantisBT lacks verification when changing a user's email addressCVE-2025-46556Mediummantisbt/mantisbt: MantisBT Vulnerable to Denial-of-Service (DoS) via Excessive Note LengthCVE-2025-47776Highmantisbt/mantisbt: MantisBT vulnerable to authentication bypass for some passwords due to PHP type jugglingCVE-2024-45792Mediummantisbt/mantisbt: MantisBT vulnerable to information disclosure with user profilesCVE-2024-34081Mediummantisbt/mantisbt: Mantis Bug Tracker (MantisBT) vulnerable to cross-site scripting CVE-2024-34080Mediummantisbt/mantisbt: MantisBT Vulnerable to Exposure of Sensitive Information to an Unauthorized ActorCVE-2024-34077Highmantisbt/mantisbt: Mantis Bug Tracker (MantisBT) allows user account takeover in the signup/reset password processCVE-2024-23830Highmantisbt/mantisbt: MantisBT Host Header Injection vulnerabilityCVE-2023-44394Mediummantisbt/mantisbt: MantisBT may disclose project names to unauthorized users CVE-2023-22476Mediummantisbt/mantisbt: MantisBT may expose private issues' summaries to unauthorized usersCVE-2022-33910Mediummantisbt/mantisbt: MantisBT XSS through crafted SVG documents in file_download.phpCVE-2021-33557Mediummantisbt/mantisbt: MantisBT allows XSS in manage_custom_field_edit_page.phpCVE-2020-35571Mediummantisbt/mantisbt: MantisBT XSS in manage_custom_field_update.phpCVE-2020-29605Mediummantisbt/mantisbt: MantisBT Incorrect Authorization in bug_actiongroup_page.phpCVE-2020-29603Mediummantisbt/mantisbt: MantisBT Insecure Storage in manage_proj_edit_page.phpCVE-2020-29604Mediummantisbt/mantisbt: MantisBT Missing Authorization access check in bug_actiongroup.phpCVE-2020-35849Highmantisbt/mantisbt: MantisBT Incorrect Authorization for bug_revision_view_page.php checkCVE-2020-28413Mediummantisbt/mantisbt: MantisBT SQL Injection via mc_project_get_users functionCVE-2020-25830Mediummantisbt/mantisbt: MantisBT HTML Injection vulnerabilityCVE-2020-25781Mediummantisbt/mantisbt: MantisBT unauthorized users able to access private files

Stop the waste.
Protect your environment with Kodem.