Dash Vulnerabilities
100 vulnerabilities related to Dash
- PoC2026-08-16CVE-2026-15733: WGDashboard <= 4.3.2 - Authenticated OS Command Injection /etc/passwd Read
- PoC2026-08-16CVE-2026-53519: Nezha Dashboard < 2.0.13 - Path Traversal
- 2026-07-20Kubernetes Dashboard /api/v1/namespaces/kube-system/secrets/kubernetes-dashboard-certs 权限绕过漏洞(CVE-2018-18264)
- PoC2026-06-24CVE-2026-55592: Dashy <= 4.3.6 - Reflected XSS via Workspace
- 2026-06-18Nezha Dashboard /dashboard../data/config.yaml 目录遍历漏洞(CVE-2026-53519)
- 2026-05-29Kubeflow Dashboard /api/workgroup/env-info 未授权访问漏洞
- PoC2026-05-14CVE-2026-38360: dash-uploader 0.1.0 - 0.7.0a2 - Unauthenticated Arbitrary File Write via Path Traversal
- PoC2026-05-14CVE-2026-38361: dash-uploader 0.1.0 - 0.7.0a2 - Denial-of-Service via flowTotalChunks
- PoC2026-05-09apache-skywalking-dashboard: Apache SkyWalking - Dashboard
- PoC2026-04-09CVE-2021-23337: Lodash Template - Server-Side Template Injection (RCE)
- PoC2026-04-09CVE-2025-54597: Heimdall Application Dashboard < 2.7.3 - Reflected XSS
- PoC2026-04-09heimdall-dashboard-exposure: Heimdall Application Dashboard - Unauthenticated Access
- PoC2026-03-25CVE-2023-6030: LogDash Activity Log <= 1.1.3 - SQL Injection
- PoC2026-01-24adminbro-dashboard-exposure: AdminBro Dashboard - Unauthenticated Access
- PoC2026-01-24administrate-dashboard: Administrate Dashboard Exposure
- PoC2026-01-24opennms-dashboard-exposure: OpenNMS Dashboard - Exposure Detection
- PoC2026-01-16CVE-2016-15041: MainWP Dashboard <= 3.1.2 - Stored Cross-Site Scripting
- PoC2026-01-16exist-db-dashboard-access: eXist-DB Dashboard Access
- PoC2026-01-16icinga-dashboard-exposure: Icinga Exposed Dashboard
- PoC2026-01-16lightstreamer-dashboard-exposure: Lightstreamer Dashboard Exposure
- PoC2025-12-12unauth-munin: Munin Monitoring Dashboard - Exposure
- PoC2025-12-02unauth-akhq-dashboard: AKHQ Dashboard - Unauthenticated Access
- PoC2025-12-02unauth-hawkeye-dashboard: Unauth Hawkeye Dashboard - Detect
- PoC2025-12-02unauth-phoenix-dashboard: Unauth Phoenix Dashboard - Detect
- PoC2025-12-02unauth-supervisor-dashboard: Unauth Supervisor Dashboard - Detect
- 2025-09-09MCPHub Dashboard JWT硬编码身份认证绕过漏洞
- 2025-08-25OpenSearch Dashboard为存在默认口令
- 2025-08-25OpenSearch Dashboard存在未授权访问
- PoC2025-08-01CVE-2018-18264: Kubernetes Dashboard <1.10.1 - Authentication Bypass
- PoC2025-08-01CVE-2021-22053: Spring Cloud Netflix Hystrix Dashboard <2.2.10 - Remote Code Execution
- PoC2025-08-01CVE-2021-3223: Node RED Dashboard <2.26.2 - Local File Inclusion
- PoC2025-08-01CVE-2021-41192: Redash Setup Configuration - Default Secrets Disclosure
- PoC2025-08-01CVE-2022-38817: Dapr Dashboard 0.1.0-0.10.0 - Improper Access Control
- PoC2025-08-01CVE-2023-34020: Uncanny Toolkit for LearnDash - Open Redirection
- PoC2025-08-01CVE-2023-35844: Lightdash version <= 0.510.3 Arbitrary File Read
- PoC2025-08-01CVE-2023-7246: System Dashboard < 2.8.10 - Cross-Site Scripting
- PoC2025-08-01CVE-2024-1208: LearnDash LMS < 4.10.3 - Sensitive Information Exposure
- PoC2025-08-01CVE-2024-1209: LearnDash LMS < 4.10.2 - Sensitive Information Exposure via assignments
- PoC2025-08-01CVE-2024-1210: LearnDash LMS < 4.10.2 - Sensitive Information Exposure
- PoC2025-08-01CVE-2024-21485: Dash Framework - Cross-site Scripting
- PoC2025-08-01CVE-2024-6586: Lightdash v0.1024.6 - Server-Side Request Forgery
- PoC2025-08-01CVE-2025-47423: Personal Weather Station Dashboard 12 - Directory Traversal
- PoC2025-08-01CVE-2021-3223: Node RED Dashboard - Directory Traversal
- PoC2025-08-01kubernetes-dashboard-enabled: Kubernetes Dashboard for ACK Clusters - Enabled
- PoC2025-08-01CVE-2022-38817: Dapr Dashboard configurations 未授权访问漏洞
- PoC2025-08-01CVE-2023-35844: Lightdash Arbitrary File Read
- PoC2025-08-01jenkins-dashboard-unauth: Jenkins Dashboard 未授权访问
- PoC2025-08-01privesc-dash: Dash - Privilege Escalation
- PoC2025-08-01CVE-2024-10708: System Dashboard < 2.8.15 - Admin+ Path Traversal
- PoC2025-08-01opensearch-dashboard-default-login: OpenSearch Dashboard - Default Login
- PoC2025-08-01beego-admin-dashboard: Beego Admin Dashboard Panel- Detect
- PoC2025-08-01goodjob-dashboard: goodjob-dashboard
- PoC2025-08-01sidekiq-dashboard: Sidekiq Dashboard Panel - Detect
- PoC2025-08-01ace-admin-dashboard: Ace Admin Dashboard - Detect
- PoC2025-08-01anteon-dashboard-unauth: Anteon Dashboard - Unauthenticated
- PoC2025-08-01atlantis-dashboard: Atlantis Dashboard - Exposure
- PoC2025-08-01clockwork-dashboard-exposure: Clockwork Dashboard Exposure
- PoC2025-08-01codis-dashboard: Codis Dashboard Exposure
- PoC2025-08-01confluence-dashboard: Confluence Dashboard Exposed
- PoC2025-08-01doris-dashboard: Doris Dashboard - Exposed
- PoC2025-08-01elastic-hd-dashboard: Elastic HD Dashboard Exposure
- PoC2025-08-01esphome-dashboard: ESPHome Dashboard Exposure
- PoC2025-08-01filebrowser-unauth: File Browser Dashboard - Unauthenticated Access
- PoC2025-08-01ganglia-cluster-dashboard: Ganglia Cluster Dashboard - Detect
- PoC2025-08-01h2o-dashboard: H2O Dashboard - Exposure
- PoC2025-08-01helm-dashboard-exposure: Helm Dashboard - Exposure
- PoC2025-08-01redash-installer: Redash Installer Exposure
- PoC2025-08-01lidarr-dashboard-unauth: Lidarr Dashboard - Unauthenticated
- PoC2025-08-01mobiproxy-dashboard: MobiProxy Dashboard - Detect
- PoC2025-08-01netalertx-dashboard: NetAlert X Admin Dashboard - Exposed
- PoC2025-08-01nextcloudpi-dashboard: NextcloudPi Dashboard - Exposed
- PoC2025-08-01ntopng-traffic-dashboard: Ntopng Traffic Dashboard - Detect
- PoC2025-08-01opensearch-dashboard-unauth: OpenSearch Dashboard - Unauth Access
- PoC2025-08-01radarr-dashboard-unauth: Radarr Dashboard - Unauthenticated
- PoC2025-08-01ray-dashboard: Ray Dashboard Exposure
- PoC2025-08-01repetier-unauth: Repetier Server Dashboard - Unauthenticated
- PoC2025-08-01seq-dashboard-unauth: Seq Dashboard - Unauthenticated
- PoC2025-08-01simatic-dashboard-exposed: Siemens SIMATIC 300 Dashboard - Exposed
- PoC2025-08-01slurm-hpc-dashboard: Slurm HPC Dashboard - Detect
- PoC2025-08-01syncthing-dashboard: Syncthing Dashboard Exposure
- PoC2025-08-01transmission-dashboard: Transmission Dashboard - Detect
- PoC2025-08-01unauth-fastvue-dashboard: Fastvue Dashboard Panel - Unauthenticated Detect
- PoC2025-08-01unauthenticated-nginx-dashboard: Nginx Dashboard
- PoC2025-08-01whisparr-dashboard-unauth: Whisparr Dashboard - Unauthenticated
- PoC2025-08-01zabbix-dashboards-access: zabbix-dashboards-access
- PoC2025-08-01acrolinx-dashboard: Acrolinx Dashboard
- PoC2025-08-01openstack-dashboard-login: OpenStack Dashboard Login Panel - Detect
- 2025-07-07PWS Dashboard 存在任意文件读取漏洞(CVE-2025-47423)
- 2025-04-27(CVE-2025-3969) codeprojects News Publishing Site Dashboard Edit Category Page组件category_image参数不受限文件上传漏洞
- 2024-11-08Cisco Nexus Dashboard Fabric Controller SQL注入漏洞
- 2024-10-02Cisco Nexus Dashboard Fabric 控制器和 Nexus Dashboard Orchestrator 信息泄露漏洞 (CVE-2024-20490)
- 2024-05-31Kubernetes Dashboard 认证绕过信息泄露漏洞
- 2024-03-26Redash存在重复安装重置密码漏洞(CVE-2021-41192)
- 2024-02-07Schneider Electric IGSS DashBoard.exe CVE-2023-3001 不安全反序列化漏洞
- 2024-02-07Lightdash CVE-2023-35844 任意文件读取漏洞
- 2023-06-20Lightdash存在路径遍历漏洞(CVE-2023-35844)
- 2022-10-26DaprDashboard未授权访问漏洞(CVE-2022-38817)
- 2021-01-19linux-dash监控系统-未授权访问
- 2021-01-19Parse Dashboard-未授权访问
- 2021-01-19MaDDash收集工具2.0.2-目录遍历漏洞(CVE-2018-12522)