📦 Jatos

by Jatos

🔍 What is Jatos?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-55008

HIGH CVSS 7.5 Jan 7, 2025

JATOS 3.9.4 contains an authentication DoS vulnerability where attackers can lock any user account indefinitely by submitting 3 failed login attempts per minute. This affects all JATOS users regardles...

CVE-2024-51380

HIGH CVSS 8.4 Nov 5, 2024

A stored Cross-Site Scripting (XSS) vulnerability in JATOS v3.9.3 allows attackers to inject malicious JavaScript into the UUID field of study properties. When an admin user views the properties, the ...

CVE-2024-51382

HIGH CVSS 8.4 Nov 5, 2024

This CSRF vulnerability in JATOS v3.9.3 allows attackers to trick administrators into unknowingly resetting their passwords, leading to complete account takeover. Any JATOS installation running the vu...