Vulnerabilities (CVE)

Filtered by vendor Kodcloud Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-49489 1 Kodcloud 1 Kodexplorer 2023-12-22 N/A 6.1 MEDIUM
Reflective Cross Site Scripting (XSS) vulnerability in KodeExplorer version 4.51, allows attackers to obtain sensitive information and escalate privileges via the APP_HOST parameter at config/i18n/en/main.php.
CVE-2023-37153 1 Kodcloud 1 Kodexplorer 2023-08-02 N/A 6.1 MEDIUM
KodExplorer 4.51 contains a Cross-Site Scripting (XSS) vulnerability in the Description box of the Light App creation feature. An attacker can exploit this vulnerability by injecting XSS syntax into the Description field.