Vulnerabilities > Redhat > Jboss Aerogear > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-07-01 CVE-2014-3650 Cross-site Scripting vulnerability in Redhat Jboss Aerogear 1.0.0
Multiple persistent cross-site scripting (XSS) flaws were found in the way Aerogear handled certain user-supplied content.
network
low complexity
redhat CWE-79
5.4
2019-11-04 CVE-2014-3649 Cross-site Scripting vulnerability in Redhat Jboss Aerogear 1.0.0/20140919
JBoss AeroGear has reflected XSS via the password field
network
low complexity
redhat CWE-79
6.1