Kimai
8 known vulnerabilities
Top Products
Kimai is an open-source time tracking application. From version 2.32.0 to before version 2.56.0, users with the role Sys
Kimai is an open-source time tracking application. From version 2.27.0 to before version 2.54.0, any ROLE_USER can creat
Kimai is an open-source time tracking application. Prior to version 2.54.0, the Team API endpoints use #[IsGranted('edit
Kimai is an open-source time tracking application. In versions 2.52.0 and below, the User Preferences API endpoint (PATC
Kimai is an open-source time tracking application. In versions 1.16.3 through 2.52.0, the escapeForHtml() function in Ki
Kimai is a web-based multi-user time-tracking application. Prior to version 2.51.0, "GET /api/invoices/{id}" only checks
Kimai 2 contains a persistent cross-site scripting vulnerability that allows attackers to inject malicious scripts into
Kimai is a web-based multi-user time-tracking application. Prior to version 2.46.0, Kimai's export functionality uses a
Frequently Asked Questions
How many CVEs affect Kimai?
Kimai has 8 CVE records in our database, including 0 critical and 0 high severity vulnerabilities.
What are the most severe Kimai vulnerabilities?
Kimai has 0 critical severity (CVSS 9.0+) and 0 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Kimai vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Kimai products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Kimai Vulnerabilities
CyberStrike scans your infrastructure for Kimai vulnerabilities and provides real-time remediation guidance.
Get Started