Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Openslides

First CVE: Dec 18, 2020Active for: 6 yearsTotal CVEs: 8

Openslides is a presentation and assembly-management platform deployed in conference, legislative, and event-coordination contexts, where its web-facing role and user-permission model create a characteristic attack surface. The vendor's vulnerability exposure clusters around input-handling and access-control weaknesses—including cross-site scripting, path traversal, privilege-escalation, and output-encoding flaws—that reflect the demands of a browser-delivered collaborative application. Vulnerabilities affecting this vendor skew toward serious outcomes; live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
8
Total CVEs
More Total CVEs than 90% of tracked vendors
2.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 80% of tracked vendors
6.8
Avg CVSS Score
Higher Avg CVSS Score than 44% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Openslides over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 18, 2020
5 years ago
Most Recent CVE
Feb 4, 2026
170 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (8 CVEs).

8 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-25519CRITICAL
OpenSlides is a free, web based presentation and assembly system for managing and projecting agenda, motions and elections of an assembly. Prior to version 4.2.29, OpenSlides suppo
Feb 4, 20269.829NONO
CVE-2020-26280HIGH
OpenSlides is a free, Web-based presentation and assembly system for managing and projecting agenda, motions, and elections of assemblies. OpenSlides version 3.2, due to unsufficie
Dec 18, 20208.927NONO
CVE-2024-22893HIGH
OpenSlides 4.0.15 verifies passwords by comparing password hashes using a function with content-dependent runtime. This can allow attackers to obtain information about the password
Sep 25, 20247.522NONO
CVE-2024-22892HIGH
OpenSlides 4.0.15 was discovered to be using a weak hashing algorithm to store passwords.
Sep 25, 20247.522NONO
CVE-2025-30343MEDIUM
A directory traversal issue was discovered in OpenSlides before 4.2.5. Files can be uploaded to OpenSlides meetings and organized in folders. The interface allows users to download
Mar 21, 20256.519NONO
CVE-2025-30342MEDIUM
An XSS issue was discovered in OpenSlides before 4.2.5. When submitting descriptions such as Moderator Notes or Agenda Topics, an editor is shown that allows one to format the subm
Mar 21, 20256.118NONO
CVE-2025-30345MEDIUM
An issue was discovered in OpenSlides before 4.2.5. When creating new chats via the chat_group.create action, the user is able to specify the name of the chat. Some HTML elements s
Mar 21, 20254.115NONO
CVE-2025-30344LOW
An issue was discovered in OpenSlides before 4.2.5. During login at the /system/auth/login/ endpoint, the system's response times differ depending on whether a user exists in the s
Mar 21, 20253.714NONO
View all 8 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products8 CVEs
13%
38%
38%
13%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local0 (0.0%)
Network8 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (87.5%)
High1 (12.5%)
Unknown0 (0.0%)
User Interaction
None5 (62.5%)
Unknown0 (0.0%)
Required3 (37.5%)
Privileges Required
Low3 (37.5%)
High0 (0.0%)
None5 (62.5%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (8 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Openslides.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Openslides — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Openslides's Products

View all 2 CNAs →

Top CWEs