Skip to main content

Vendor/product archive

seafile / seafile_server CVEs

Beta · best-effort

4 CVEs tagged to seafile / seafile_server0 Critical, 3 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2026-30587

Published Mar 25, 2026

Multiple Stored XSS vulnerabilities exist in Seafile Server version 13.0.15,13.0.16-pro,12.0.14 and prior and fixed in 13.0.17, 13.0.17-pro, and 12.0.20-pro, via the Seadoc (sdoc)…

CVSS 8.7 · High
evidence mentions
6
Buzz score
31.0
Vendor/product tagsBeta · best-effort

CVE-2025-65516

Published Dec 4, 2025

A stored cross-site scripting (XSS) vulnerability was discovered in Seafile Community Edition prior to version 13.0.12. When Seafile is configured with the Golang file server, an…

CVSS 6.1 · Medium
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2021-43820

Published Dec 14, 2021

Seafile is an open source cloud storage system. A sync token is used in Seafile file syncing protocol to authorize access to library data. To improve performance, the token is cac…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2014-5443

Published Mar 19, 2018

Seafile Server before 3.1.2 and Server Professional Edition before 3.1.0 allow local users to gain privileges via vectors related to ccnet handling user accounts.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1