Vulnerabilities > Remark42

DATE CVE VULNERABILITY TITLE RISK
2023-10-23 CVE-2023-45966 Server-Side Request Forgery (SSRF) vulnerability in Remark42
umputun remark42 version 1.12.1 and before has a Blind Server-Side Request Forgery (SSRF) vulnerability.
network
low complexity
remark42 CWE-918
7.5
2021-03-27 CVE-2021-29271 Cross-site Scripting vulnerability in Remark42
remark42 before 1.6.1 allows XSS, as demonstrated by "Locator: Locator{URL:" followed by an XSS payload.
network
remark42 CWE-79
4.3