Vulnerabilities > Apache > Deltaspike > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-03-19 CVE-2019-12416 Injection vulnerability in Apache Deltaspike
we got reports for 2 injection attacks against the DeltaSpike windowhandler.js.
network
low complexity
apache CWE-74
6.1
2018-01-04 CVE-2017-17837 Cross-site Scripting vulnerability in Apache Deltaspike 1.8.0
The Apache DeltaSpike-JSF 1.8.0 module has a XSS injection leak in the windowId handling.
network
low complexity
apache CWE-79
6.1