Vulnerabilities > Mineweb

DATE CVE VULNERABILITY TITLE RISK
2022-03-30 CVE-2022-1163 Unspecified vulnerability in Mineweb Minewebcms
Cross-site Scripting (XSS) - Stored in GitHub repository mineweb/minewebcms prior to next.
network
low complexity
mineweb
4.8
2021-08-06 CVE-2020-18693 Cross-site Scripting vulnerability in Mineweb Minewebcms 1.7.0
Cross Site Scripting (XSS) in MineWebCMS v1.7.0 allows remote attackers to execute arbitrary code by injecting malicious code into the 'Title' field of the component '/admin/news'.
network
low complexity
mineweb CWE-79
5.4