Burden Project develops a focused web application framework where the observed vulnerability pattern centers on authentication and input-handling gaps, including improper authentication mechanisms and cross-site scripting weaknesses in web page generation. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Burden Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-7137CRITICAL The "remember me" functionality in login.php in Burden before 1.8.1 allows remote attackers to bypass authentication and gain privileges by setting the burden_user_rememberme cooki | Jan 26, 2014 | 9.8 | 49 | NO | YES |
CVE-2022-24589MEDIUM Burden v3.0 was discovered to contain a stored cross-site scripting (XSS) in the Add Category function. This vulnerability allows attackers to execute arbitrary web scripts or HTML | Feb 15, 2022 | 6.1 | 21 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Burden Project.
Media articles that mention a CVE ID that affects a product developed by Burden Project — matched by CVE ID, not by vendor name.