Filtered by vendor Microweber
Subscriptions
Filtered by product Microweber
Subscriptions
Total
101 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2022-0721 | 1 Microweber | 1 Microweber | 2024-11-21 | 6.5 Medium |
Insertion of Sensitive Information Into Debugging Code in GitHub repository microweber/microweber prior to 1.3. | ||||
CVE-2022-0719 | 1 Microweber | 1 Microweber | 2024-11-21 | 5.4 Medium |
Cross-site Scripting (XSS) - Reflected in GitHub repository microweber/microweber prior to 1.3. | ||||
CVE-2022-0698 | 1 Microweber | 1 Microweber | 2024-11-21 | 6.1 Medium |
Microweber version 1.3.1 allows an unauthenticated user to perform an account takeover via an XSS on the 'select-file' parameter. | ||||
CVE-2022-0690 | 1 Microweber | 1 Microweber | 2024-11-21 | 6.1 Medium |
Cross-site Scripting (XSS) - Reflected in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0689 | 1 Microweber | 1 Microweber | 2024-11-21 | 5.3 Medium |
Use multiple time the one-time coupon in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0688 | 1 Microweber | 1 Microweber | 2024-11-21 | 4.9 Medium |
Business Logic Errors in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0678 | 1 Microweber | 1 Microweber | 2024-11-21 | 6.1 Medium |
Cross-site Scripting (XSS) - Reflected in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0666 | 1 Microweber | 1 Microweber | 2024-11-21 | 7.5 High |
CRLF Injection leads to Stack Trace Exposure due to lack of filtering at https://demo.microweber.org/ in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0660 | 1 Microweber | 1 Microweber | 2024-11-21 | 7.5 High |
Generation of Error Message Containing Sensitive Information in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0638 | 1 Microweber | 1 Microweber | 2024-11-21 | 4.3 Medium |
Cross-Site Request Forgery (CSRF) in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0597 | 1 Microweber | 1 Microweber | 2024-11-21 | 6.1 Medium |
Open Redirect in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0596 | 1 Microweber | 1 Microweber | 2024-11-21 | 4.3 Medium |
Improper Validation of Specified Quantity in Input in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0560 | 1 Microweber | 1 Microweber | 2024-11-21 | 6.1 Medium |
Open Redirect in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0558 | 1 Microweber | 1 Microweber | 2024-11-21 | 5.4 Medium |
Cross-site Scripting (XSS) - Stored in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0557 | 1 Microweber | 1 Microweber | 2024-11-21 | 7.2 High |
OS Command Injection in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0506 | 1 Microweber | 1 Microweber | 2024-11-21 | 5.4 Medium |
Cross-site Scripting (XSS) - Stored in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0505 | 1 Microweber | 1 Microweber | 2024-11-21 | 6.5 Medium |
Cross-Site Request Forgery (CSRF) in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0504 | 1 Microweber | 1 Microweber | 2024-11-21 | 6.5 Medium |
Generation of Error Message Containing Sensitive Information in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0379 | 1 Microweber | 1 Microweber | 2024-11-21 | 5.4 Medium |
Cross-site Scripting (XSS) - Stored in Packagist microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0378 | 1 Microweber | 1 Microweber | 2024-11-21 | 5.4 Medium |
Cross-site Scripting (XSS) - Reflected in Packagist microweber/microweber prior to 1.2.11. |