Vulnerabilities (CVE)

Filtered by vendor Elgg Subscribe
Filtered by product Elgg
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-4072 1 Elgg 1 Elgg 2022-01-03 3.5 LOW 5.4 MEDIUM
elgg is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-3964 1 Elgg 1 Elgg 2021-12-02 4.3 MEDIUM 5.9 MEDIUM
elgg is vulnerable to Authorization Bypass Through User-Controlled Key
CVE-2011-2935 1 Elgg 1 Elgg 2019-11-13 4.3 MEDIUM 6.1 MEDIUM
Elgg through 1.7.10 has XSS
CVE-2019-11016 1 Elgg 1 Elgg 2019-04-09 5.8 MEDIUM 6.1 MEDIUM
Elgg before 1.12.18 and 2.3.x before 2.3.11 has an open redirect.