
m19o/Security-Advisories
CVE History
| CVE | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|
| 5.4 MEDIUM | — | ||
SSCMS 7.2.2 was discovered to contain a cross-site scripting (XSS) vulnerability via the Column Management component. | |||
| 5.4 MEDIUM | — | ||
SSCMS 7.2.2 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Material Management component. | |||
| 5.4 MEDIUM | — | ||
SSCMS 7.2.2 was discovered to contain a cross-site scripting (XSS) vulnerability via the Content Management component. | |||
| 7.5 HIGH | — | ||
LavaLite CMS v 9.0.0 is vulnerable to Sensitive Data Exposure. | |||
| 7.5 HIGH | — | ||
LavaLite CMS v 9.0.0 is vulnerable to Sensitive Data Exposure. | |||
| 6.1 MEDIUM | — | ||
LavaLite CMS v 9.0.0 was discovered to be vulnerable to a host header injection attack. | |||
| 9.8 CRITICAL | — | ||
LavaLite CMS v 9.0.0 was discovered to be vulnerable to web cache poisoning. | |||
| 6.1 MEDIUM | — | ||
The MoveIt framework 1.1.11 for ROS allows cross-site scripting (XSS) via the API authentication function. NOTE: this issue is disputed by the original reporter because it has "no impact." | |||