Vulnerabilities > Datax

DATE CVE VULNERABILITY TITLE RISK
2025-03-19 CVE-2024-55009 Cross-site Scripting vulnerability in Datax Autobib
A reflected cross-site scripting (XSS) vulnerability in AutoBib - Bibliographic collection management system 3.1.140 and earlier allows attackers to execute arbitrary Javascript in the context of a victim's browser via injecting a crafted payload into the WCE=topFrame&WCU= parameter.
network
low complexity
datax CWE-79
6.1