📦 Litmus

by Litmuschaos

🔍 What is Litmus?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-8797

MEDIUM CVSS 6.3 Aug 10, 2025

A critical permission vulnerability in LitmusChaos Litmus up to version 3.19.0 allows remote attackers to exploit the LocalStorage Handler component. This could lead to unauthorized access or privileg...

CVE-2025-8796

MEDIUM CVSS 5.4 Aug 10, 2025

This vulnerability in LitmusChaos Litmus allows unauthorized deletion of projects due to missing authorization checks in the delete project endpoint. Attackers can remotely delete projects without pro...

CVE-2025-8795

MEDIUM CVSS 6.3 Aug 10, 2025

This critical vulnerability in LitmusChaos Litmus allows attackers to bypass access controls via improper validation of the projectID parameter in the /auth/login endpoint. Attackers can remotely expl...

CVE-2025-8794

MEDIUM CVSS 5.3 Aug 10, 2025

This vulnerability in LitmusChaos Litmus allows local attackers to bypass authorization by manipulating the projectID argument in the LocalStorage Handler component. It affects LitmusChaos Litmus vers...

CVE-2025-8793

MEDIUM CVSS 4.3 Aug 10, 2025

This vulnerability in LitmusChaos Litmus allows attackers to manipulate resource identifiers via the projectID argument, potentially leading to unauthorized access or resource manipulation. It affects...

CVE-2025-8792

MEDIUM CVSS 4.3 Aug 10, 2025

This vulnerability in LitmusChaos Litmus allows attackers to bypass server-side security controls through client-side manipulation. It affects LitmusChaos Litmus versions up to 3.19.0, enabling remote...

CVE-2025-8791

MEDIUM CVSS 6.3 Aug 10, 2025

This critical vulnerability in LitmusChaos Litmus allows attackers to bypass authorization controls by manipulating the 'role' parameter in the /auth/list_projects endpoint. Remote attackers can poten...