Vulnerabilities > In2Code > Femanager > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-12-12 CVE-2022-44543 Unspecified vulnerability in In2Code Femanager
The femanager extension before 5.5.2, 6.x before 6.3.3, and 7.x before 7.0.1 for TYPO3 allows creation of frontend users in restricted groups (if there is a usergroup field on the registration form).
network
low complexity
in2code
5.3
2021-08-13 CVE-2021-36787 Cross-site Scripting vulnerability in In2Code Femanager
The femanager extension before 5.5.1 and 6.x before 6.3.1 for TYPO3 allows XSS via a crafted SVG document.
network
low complexity
in2code CWE-79
5.4