Vulnerabilities (CVE)

Filtered by vendor Totaljs Subscribe
Filtered by product Total.js
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-30013 1 Totaljs 1 Total.js 2022-05-24 3.5 LOW 5.4 MEDIUM
A stored cross-site scripting (XSS) vulnerability in the upload function of totaljs CMS 3.4.5 allows attackers to execute arbitrary web scripts via a JavaScript embedded PDF file.