Vulnerabilities > Cervantessec

DATE CVE VULNERABILITY TITLE RISK
2024-07-28 CVE-2024-42054 Unrestricted Upload of File with Dangerous Type vulnerability in Cervantessec Cervantes 0.3/0.4/0.5
Cervantes through 0.5-alpha accepts insecure file uploads.
network
low complexity
cervantessec CWE-434
5.4
2024-07-28 CVE-2024-42055 Cross-site Scripting vulnerability in Cervantessec Cervantes 0.3/0.4/0.5
Cervantes through 0.5-alpha allows stored XSS.
network
low complexity
cervantessec CWE-79
5.4