| Type | URI |
|---|---|
| cve@mitre.org | https://m10x.de/posts/2024/11/all-your-recipe-are-belong-to-us-part-1/3-stored-xss-csrf-and-broken-access-control-vulnerabilities-in-grocy/ |
| CPE URI | Source package | Min version | Max version |
|---|---|---|---|
|
grocy | >= 0 | <= 4.3.0 |
cpe:2.3:a:grocy_project:grocy:*:*:*:*:*:*:*:* |
grocy | >= None | <= 4.3.0 |
| Source package | Branch | Version | Maintainer | Status |
|---|---|---|---|---|
| grocy | edge-community | 4.3.0-r1 | Will Sinatra <wpsinatra@gmail.com> | possibly vulnerable |
| grocy | edge-community | 4.3.0-r0 | Will Sinatra <wpsinatra@gmail.com> | possibly vulnerable |
| grocy | edge-community | 4.2.0-r1 | Will Sinatra <wpsinatra@gmail.com> | possibly vulnerable |
| grocy | 3.22-community | 4.2.0-r1 | Will Sinatra <wpsinatra@gmail.com> | possibly vulnerable |