Stashapp is a niche media-management application with a minimal disclosure footprint concentrated in its Stash product. The observed vulnerability pattern centers on SQL injection, reflecting typical input-sanitization challenges in database-driven applications. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Stashapp over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-32231MEDIUM Stash up to v0.25.1 was discovered to contain a SQL injection vulnerability via the sort parameter. | Aug 15, 2024 | 6.3 | 27 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Stashapp.
Media articles that mention a CVE ID that affects a product developed by Stashapp — matched by CVE ID, not by vendor name.