Vulnerabilities > Gillesdumas

DATE CVE VULNERABILITY TITLE RISK
2023-12-15 CVE-2023-49177 Cross-site Scripting vulnerability in Gillesdumas Which Template File
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Gilles Dumas which template file allows Reflected XSS.This issue affects which template file: from n/a through 4.9.0.
network
low complexity
gillesdumas CWE-79
6.1
2023-10-16 CVE-2023-45753 Cross-Site Request Forgery (CSRF) vulnerability in Gillesdumas Which Template File
Cross-Site Request Forgery (CSRF) vulnerability in Gilles Dumas which template file plugin <= 4.6.0 versions.
network
low complexity
gillesdumas CWE-352
8.8