Vulnerabilities > O DYN > Collabtive > 3.1

DATE CVE VULNERABILITY TITLE RISK
2021-01-29 CVE-2021-3298 Cross-site Scripting vulnerability in O-Dyn Collabtive 3.1
Collabtive 3.1 allows XSS when an authenticated user enters an XSS payload into the address section of the profile edit page, aka the manageuser.php?action=edit address1 parameter.
network
o-dyn CWE-79
3.5
2020-08-31 CVE-2020-13655 Cross-site Scripting vulnerability in O-Dyn Collabtive 3.0/3.1
An issue was discovered in Collabtive 3.0 and later.
network
o-dyn CWE-79
4.3
2019-02-19 CVE-2019-8935 Cross-site Scripting vulnerability in O-Dyn Collabtive 3.1
Collabtive 3.1 allows XSS via the manageuser.php?action=profile id parameter.
network
o-dyn CWE-79
3.5