Vulnerabilities > Automattic > Crowdsignal Dashboard > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-02-10 CVE-2023-51488 Cross-site Scripting vulnerability in Automattic Crowdsignal Dashboard
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Automattic, Inc.
network
low complexity
automattic CWE-79
6.1
2022-08-08 CVE-2022-2386 Cross-site Scripting vulnerability in Automattic Crowdsignal Dashboard
The Crowdsignal Dashboard WordPress plugin before 3.0.8 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting
network
low complexity
automattic CWE-79
6.1