Vulnerabilities > Laborator

DATE CVE VULNERABILITY TITLE RISK
2023-08-11 CVE-2020-24075 Cross-site Scripting vulnerability in Laborator Kalium
Cross Site Scripting (XSS) vulnerability in Name Input Field in Contact Us form in Laborator Kalium before 3.0.4, allows remote attackers to execute arbitrary code.
network
low complexity
laborator CWE-79
6.1
2020-08-27 CVE-2020-23576 Cross-site Scripting vulnerability in Laborator Neon 3.0
Laborator Neon dashboard v3 is affected by stored Cross Site Scripting (XSS) via the chat tab.
network
low complexity
laborator CWE-79
5.4
2020-06-10 CVE-2020-14010 Cross-site Scripting vulnerability in Laborator Xenon 1.3
The Laborator Xenon theme 1.3 for WordPress allows Reflected XSS via the data/typeahead-generate.php q (aka name) parameter.
network
low complexity
laborator CWE-79
6.1
2020-06-06 CVE-2020-13890 Cross-site Scripting vulnerability in Laborator Neon 2.0/3.0
The Neon theme 2.0 before 2020-06-03 for Bootstrap allows XSS via an Add Task Input operation in a dashboard.
network
low complexity
laborator CWE-79
5.4
2019-12-30 CVE-2019-20141 Cross-site Scripting vulnerability in Laborator Neon 2.0
An XSS issue was discovered in the Laborator Neon theme 2.0 for WordPress via the data/autosuggest-remote.php q parameter.
network
low complexity
laborator CWE-79
6.1