Vulnerabilities > Mautic > Mautic > 1.3.0

DATE CVE VULNERABILITY TITLE RISK
2021-01-19 CVE-2020-35129 Cross-site Scripting vulnerability in Mautic
Mautic before 3.2.4 is affected by stored XSS.
network
mautic CWE-79
6.0
2018-04-18 CVE-2018-8092 Improper Neutralization of Formula Elements in a CSV File vulnerability in Mautic
Mautic before 2.13.0 allows CSV injection.
network
low complexity
mautic CWE-1236
7.5
2018-04-18 CVE-2018-8071 Cross-site Scripting vulnerability in Mautic
Mautic before v2.13.0 has stored XSS via a theme config file.
network
mautic CWE-79
4.3
2018-04-17 CVE-2018-10189 Information Exposure vulnerability in Mautic
An issue was discovered in Mautic 1.x and 2.x before 2.13.0.
network
low complexity
mautic CWE-200
5.0
2018-02-09 CVE-2017-1000506 Cross-site Scripting vulnerability in Mautic
Mautic version 2.11.0 and earlier contains a Cross Site Scripting (XSS) vulnerability in Company's name that can result in denial of service and execution of javascript code.
network
mautic CWE-79
4.3
2017-07-17 CVE-2017-1000046 Unspecified vulnerability in Mautic
Mautic 2.6.1 and earlier fails to set flags on session cookies
network
low complexity
mautic
5.0