Vulnerabilities > Graylog

DATE CVE VULNERABILITY TITLE RISK
2018-06-01 CVE-2018-11650 Cross-site Scripting vulnerability in Graylog
Graylog before v2.4.4 has an XSS security issue with unescaped text in notifications, related to toastr and util/UserNotification.js.
network
low complexity
graylog CWE-79
6.1