Vulnerabilities > Bloofox > Low

DATE CVE VULNERABILITY TITLE RISK
2022-02-24 CVE-2021-44608 Cross-site Scripting vulnerability in Bloofox Bloofoxcms 0.5.1/0.5.2/0.5.2.1
Multiple Cross Site Scripting (XSS) vulnerabilities exists in bloofoxCMS 0.5.2.1 - 0.5.1 via the (1) file parameter and (2) type parameter in an edit action in index.php.
network
bloofox CWE-79
3.5
2021-06-16 CVE-2020-35761 Cross-site Scripting vulnerability in Bloofox Bloofoxcms 0.5.2.1
bloofoxCMS 0.5.2.1 is infected with XSS that allows remote attackers to execute arbitrary JS/HTML Code.
network
bloofox CWE-79
3.5