Vulnerabilities (CVE)

Filtered by vendor Chevereto Subscribe
Filtered by product Chevereto
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-31721 1 Chevereto 1 Chevereto 2021-12-01 4.3 MEDIUM 6.1 MEDIUM
Chevereto before 3.17.1 allows Cross Site Scripting (XSS) via an image title at the image upload stage.
CVE-2018-12030 1 Chevereto 1 Chevereto 2018-08-01 3.5 LOW 5.4 MEDIUM
Chevereto Free before 1.0.13 has XSS.
CVE-2017-1000058 1 Chevereto 1 Chevereto 2017-10-31 4.3 MEDIUM 6.1 MEDIUM
Stored XSS vulnerabilities in chevereto CMS before version 3.8.11, one in the user profile and one in the Exif data parser.