Vulnerabilities > Grails > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-06-26 CVE-2018-1000529 Cross-site Scripting vulnerability in Grails Fields 2.2.7
Grails Fields plugin version 2.2.7 contains a Cross Site Scripting (XSS) vulnerability in Using the display tag that can result in XSS .
network
low complexity
grails CWE-79
6.1
2017-02-27 CVE-2017-6344 XXE vulnerability in Grails PDF Plugin 0.6
XML External Entity (XXE) vulnerability in Grails PDF Plugin 0.6 allows remote attackers to read arbitrary files via a crafted XML document.
local
low complexity
grails CWE-611
5.9