Vulnerabilities > Mondula > Multi Step Form > 1.7.8

DATE CVE VULNERABILITY TITLE RISK
2023-12-21 CVE-2023-50832 Cross-site Scripting vulnerability in Mondula Multi Step Form
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mondula GmbH Multi Step Form allows Stored XSS.This issue affects Multi Step Form: from n/a through 1.7.13.
network
low complexity
mondula CWE-79
4.8
2023-11-22 CVE-2023-47758 Cross-Site Request Forgery (CSRF) vulnerability in Mondula Multi Step Form
Cross-Site Request Forgery (CSRF) vulnerability in Mondula GmbH Multi Step Form plugin <= 1.7.11 versions.
network
low complexity
mondula CWE-352
8.8