Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.5 CVE-2023-49508 Directory Traversal vulnerability in YetiForceCompany YetiForceCRM versions 6.4.0 and before allows a remote authenticated attacker to obtain sensiti… Yetiforce Customer Relationship Management 6.5.0+ Fix from $1,6002024-02-16 MEDIUM 5.4 CVE-2022-3002 Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0. Yetiforce Customer Relationship Management 6.4.0+ Fix from $1,6002022-10-06 MEDIUM 5.4 CVE-2022-3005 Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0. Yetiforce Customer Relationship Management 6.4.0+ Fix from $1,6002022-09-20 MEDIUM 5.4 CVE-2022-3004 Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0. Yetiforce Customer Relationship Management 6.4.0+ Fix from $1,6002022-09-20 MEDIUM 5.4 CVE-2022-3000 Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0. Yetiforce Customer Relationship Management 6.4.0+ Fix from $1,6002022-09-20 MEDIUM 5.4 CVE-2022-2924 Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.3. Yetiforce Customer Relationship Management 6.3.0+ Fix from $1,6002022-09-20 MEDIUM 5.4 CVE-2022-2829 Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0. Yetiforce Customer Relationship Management 6.4.0+ Fix from $1,6002022-08-23 MEDIUM 5.4 CVE-2022-2890 Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0. Yetiforce Customer Relationship Management 6.4.0+ Fix from $1,6002022-08-22 MEDIUM 5.4 CVE-2022-1340 Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0. Yetiforce Customer Relationship Management 6.4.0+ Fix from $1,6002022-08-22 MEDIUM 6.1 CVE-2022-1411 Unrestructed file upload in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0. Attacker can send malicious files to the victims is able … Yetiforce Customer Relationship Management 6.4.0+ Fix from $1,6002022-05-05 HIGH 8.0 CVE-2022-0269 Cross-Site Request Forgery (CSRF) in Packagist yetiforce/yetiforce-crm prior to 6.3.0. Yetiforce Customer Relationship Management 6.3.0+ Fix from $1,9502022-01-24 MEDIUM 6.1 CVE-2021-4121 yetiforcecrm is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Yetiforce Customer Relationship Management after 6.3.0 Fix from $1,6002021-12-16 MEDIUM 5.4 CVE-2021-4116 yetiforcecrm is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Yetiforce Customer Relationship Management after 6.3.0 Fix from $1,6002021-12-15 MEDIUM 6.1 CVE-2021-4107 yetiforcecrm is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Yetiforce Customer Relationship Management after 6.3.0 Fix from $1,6002021-12-14