Vulnerabilities > Reviewboard > Review Board > 1.6.10

DATE CVE VULNERABILITY TITLE RISK
2019-11-04 CVE-2013-4409 Improper Input Validation vulnerability in multiple products
An eval() vulnerability exists in Python Software Foundation Djblets 0.7.21 and Beanbag Review Board before 1.7.15 when parsing JSON requests.
network
low complexity
reviewboard fedoraproject redhat CWE-20
7.5
2014-04-11 CVE-2013-4795 Cross-Site Scripting vulnerability in Reviewboard Review Board
Cross-site scripting (XSS) vulnerability in the Submitters list in Review Board 1.6.x before 1.6.18 and 1.7.x before 1.7.12 allows remote attackers to inject arbitrary web script or HTML via a user full name.
4.3
2013-11-19 CVE-2013-4519 Cross-Site Scripting vulnerability in Reviewboard Review Board
Multiple cross-site scripting (XSS) vulnerabilities in Review Board 1.6.x before 1.6.21 and 1.7.x before 1.7.17 allow remote attackers to inject arbitrary web script or HTML via the (1) Branch field or (2) caption of an uploaded file.
4.3
2013-07-31 CVE-2013-2209 Cross-Site Scripting vulnerability in Reviewboard Review Board
Cross-site scripting (XSS) vulnerability in the auto-complete widget in htdocs/media/rb/js/reviews.js in Review Board 1.6.x before 1.6.17 and 1.7.x before 1.7.10 allows remote attackers to inject arbitrary web script or HTML via a full name.
4.3