Opencast
6 CVEs tracked since 2020. Since Jan 2020, none of them reached CISA KEV.
Opencast CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2020-01 | 6 | 0 |
Products
The products that kept showing up in Opencast's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 15 most recently published vulnerabilities affecting Opencast.
- CVE-2026-77615Paella Player: Stored XSS via caption cue text8.7
- CVE-2026-77614Opencast: Session fixation in login enables account takeover via crafted link8.8
- CVE-2025-61906Opencast's editor accidentally publishes videos/overwrites publications #16264.3
- CVE-2025-61788Opencast Paella Player 7 vulnerable to Cross-Site-Scripting5.4
- CVE-2025-55202Opencast has a partial path traversal vulnerability in UI config5.3
- CVE-2025-54380Opencast still publishes global system account credentials6.5
- CVE-2024-52797Searching Opencast may cause a denial of service6.5
- CVE-2022-41965Opencast Authenticated OpenRedirect Vulnerability5.7
- CVE-2022-29237Limited Authentication Bypass for Media Files in Opencast5.4
- CVE-2021-43821Files Accessible to External Parties in Opencast9.9
- CVE-2021-43807HTTP Method Spoofing in Opencast7.5
- CVE-2021-32623Opencast vulnerable to billion laughs attack (XML bomb)8.1
- CVE-2021-21318Removing access may not effect published series5.4
- CVE-2020-26234Disabled Hostname Verification in OpenCast4.8
- CVE-2020-5206Authentication Bypass For Endpoints With Anonymous Access in OpenCast8.7
The record
- Peak rank
- #73 in Jan 2020
- Busiest month shown
- Jan 2020, 6 CVEs
- Months with a KEV entry
- 0 since Jan 2020
- Monthly snapshots
- 1 since 2020