Vulnerabilities (CVE)

Filtered by vendor Ez Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-12139 1 Ez 2 Ezplatform-admin-ui, Ezplatform-page-builder 2019-05-17 4.3 MEDIUM 6.1 MEDIUM
An XSS issue was discovered in the Admin UI in eZ Platform 2.x. This affects ezplatform-admin-ui 1.3.x before 1.3.5 and 1.4.x before 1.4.4, and ezplatform-page-builder 1.1.x before 1.1.5 and 1.2.x before 1.2.4.
CVE-2017-1000431 1 Ez 1 Ez Publish 2018-01-17 4.3 MEDIUM 6.1 MEDIUM
eZ Systems eZ Publish version 5.4.0 to 5.4.9, and 5.3.12 and older, is vulnerable to an XSS issue in the search module, resulting in a risk of attackers injecting scripts which may e.g. steal authentication credentials.