Vulnerabilities > Fit2Cloud > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-05-24 | CVE-2022-42225 | Cross-site Scripting vulnerability in Fit2Cloud Lina Jumpserver 2.10.0 <= version <= 2.26.0 contains multiple stored XSS vulnerabilities because of improper filtering of user input, which can execute any javascript under admin's permission. | 5.4 |
2023-05-23 | CVE-2023-2844 | Unspecified vulnerability in Fit2Cloud Cloudexplorer Lite Authorization Bypass Through User-Controlled Key in GitHub repository cloudexplorer-dev/cloudexplorer-lite prior to v1.1.0. | 4.9 |
2023-01-10 | CVE-2023-22479 | Unspecified vulnerability in Fit2Cloud Kubepi KubePi is a modern Kubernetes panel. | 6.5 |
2022-04-22 | CVE-2022-28074 | Cross-site Scripting vulnerability in Fit2Cloud Halo 1.5.0 Halo-1.5.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability via \admin\index.html#/system/tools. | 4.8 |
2022-01-13 | CVE-2022-22123 | Unspecified vulnerability in Fit2Cloud Halo In Halo, versions v1.0.0 to v1.4.17 (latest) are vulnerable to Stored Cross-Site Scripting (XSS) in the article title. | 5.4 |