Filtered by vendor Savannah Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-27632 1 Savannah 1 Savane 2025-03-26 8.8 High
An issue in GNU Savane v.3.12 and before allows a remote attacker to escalate privileges via the form_id in the form_header() function.
CVE-2024-27630 1 Savannah 1 Savane 2025-03-13 7.5 High
Insecure Direct Object Reference (IDOR) in GNU Savane v.3.12 and before allows a remote attacker to delete arbitrary files via crafted input to the trackers_data_delete_file function.