Filtered by vendor Cinnamon Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-56526 1 Cinnamon 1 Kotaemon 2025-11-24 6.1 Medium
Cross site scripting (XSS) vulnerability in Kotaemon 0.11.0 allowing attackers to execute arbitrary code via a crafted PDF.
CVE-2025-56527 1 Cinnamon 1 Kotaemon 2025-11-20 7.5 High
Plaintext password storage in Kotaemon 0.11.0 in the client's localStorage.