Vulnerabilities > Projectsend > Projectsend > r1070
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-02-01 | CVE-2023-0607 | Cross-site Scripting vulnerability in Projectsend Cross-site Scripting (XSS) - Stored in GitHub repository projectsend/projectsend prior to r1606. | 4.8 |
2021-01-26 | CVE-2020-28874 | Improper Privilege Management vulnerability in Projectsend reset-password.php in ProjectSend before r1295 allows remote attackers to reset a password because of incorrect business logic. | 5.0 |