📦 Indico

by Cern

🔍 What is Indico?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-30185

HIGH CVSS 7.5 Apr 7, 2021

CVE-2021-30185 is a host header injection vulnerability in CERN Indico that allows attackers to manipulate password reset links. By supplying a malicious Host header, attackers can redirect password r...

CVE-2026-25739

MEDIUM CVSS 5.4 Feb 19, 2026

This CVE describes a cross-site scripting (XSS) vulnerability in Indico event management system versions prior to 3.3.10. Attackers can inject malicious scripts by uploading certain file types as mate...

CVE-2025-59035

MEDIUM CVSS 4.6 Sep 10, 2025

This CVE describes a Cross-Site Scripting (XSS) vulnerability in Indico event management system versions prior to 3.3.8. The vulnerability allows attackers to inject malicious scripts when LaTeX math ...