Vulnerabilities > Daybydaycrm > Daybyday CRM > 2.2.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-01-05 | CVE-2022-22109 | Cross-site Scripting vulnerability in Daybydaycrm Daybyday CRM 2.2.0 In Daybyday CRM, version 2.2.0 is vulnerable to Stored Cross-Site Scripting (XSS) vulnerability that allows low privileged application users to store malicious scripts in the title field of new tasks. | 3.5 |
2022-01-05 | CVE-2022-22111 | Missing Authorization vulnerability in Daybydaycrm Daybyday CRM 2.2.0 In DayByDay CRM, version 2.2.0 is vulnerable to missing authorization. | 6.5 |