Vulnerabilities > Redhat > Jboss Aerogear > 1.0.0

DATE CVE VULNERABILITY TITLE RISK
2022-07-01 CVE-2014-3648 Resource Exhaustion vulnerability in Redhat Jboss Aerogear 1.0.0
The simplepush server iterates through the application installations and pushes a notification to the server provided by deviceToken.
network
low complexity
redhat CWE-400
5.0
2022-07-01 CVE-2014-3650 Cross-site Scripting vulnerability in Redhat Jboss Aerogear 1.0.0
Multiple persistent cross-site scripting (XSS) flaws were found in the way Aerogear handled certain user-supplied content.
network
redhat CWE-79
3.5