Vulnerabilities > Javamelody Project

DATE CVE VULNERABILITY TITLE RISK
2018-09-26 CVE-2018-15531 XXE vulnerability in Javamelody Project Javamelody
JavaMelody before 1.74.0 has XXE via parseSoapMethodName in bull/javamelody/PayloadNameRequestWrapper.java.
network
low complexity
javamelody-project CWE-611
critical
9.8
2018-06-14 CVE-2018-12432 Cross-site Scripting vulnerability in Javamelody Project Javamelody
JavaMelody through 1.60.0 has XSS via the counter parameter in a clear_counter action to the /monitoring URI.
network
low complexity
javamelody-project CWE-79
6.1