Vulnerabilities > Samsung > Smarttagplugin > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-09-09 CVE-2022-36859 Cross-site Scripting vulnerability in Samsung Smarttagplugin 1.2.156
Improper input validation vulnerability in SmartTagPlugin prior to version 1.2.21-6 allows privileged attackers to trigger a XSS on a victim's devices.
low complexity
samsung CWE-79
4.8
2022-02-11 CVE-2022-24926 Cross-site Scripting vulnerability in Samsung Smarttagplugin
Improper input validation vulnerability in SmartTagPlugin prior to version 1.2.15-6 allows privileged attackers to trigger a XSS on a victim's devices.
network
low complexity
samsung CWE-79
5.4