Vulnerabilities (CVE)

Filtered by vendor Xtendify Subscribe
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-37472 1 Xtendify 1 Woffice 2024-07-19 N/A 6.1 MEDIUM
Cross Site Scripting (XSS) vulnerability in WofficeIO Woffice allows Reflected XSS.This issue affects Woffice: from n/a through 5.4.8.
CVE-2024-37471 1 Xtendify 1 Woffice 2024-07-19 N/A 6.1 MEDIUM
Cross Site Scripting (XSS) vulnerability in WofficeIO Woffice Core allows Reflected XSS.This issue affects Woffice Core: from n/a through 5.4.8.
CVE-2023-32738 1 Xtendify 1 Eonet Manual User Approve 2023-11-07 N/A 4.8 MEDIUM
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Alkaweb Eonet Manual User Approve plugin <= 2.1.3 versions.
CVE-2023-46189 1 Xtendify 1 Simple Calendar 2023-11-01 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Simple Calendar – Google Calendar Plugin <= 3.2.5 versions.