Vulnerabilities (CVE)

Filtered by vendor Mineweb Project Subscribe
Filtered by product Minewebcms
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-18693 1 Mineweb Project 1 Minewebcms 2021-08-13 3.5 LOW 5.4 MEDIUM
Cross Site Scripting (XSS) in MineWebCMS v1.7.0 allows remote attackers to execute arbitrary code by injecting malicious code into the 'Title' field of the component '/admin/news'.