Vulnerabilities > Calibre WEB Project > Low

DATE CVE VULNERABILITY TITLE RISK
2022-01-16 CVE-2021-4170 Cross-site Scripting vulnerability in Calibre-Web Project Calibre-Web
calibre-web is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
3.5
2021-10-04 CVE-2021-25964 Cross-site Scripting vulnerability in Calibre-Web Project Calibre-Web
In “Calibre-web” application, v0.6.0 to v0.6.12, are vulnerable to Stored XSS in “Metadata”.
3.5