Vulnerabilities > Sixapart > Movable Type > 1.53

DATE CVE VULNERABILITY TITLE RISK
2023-10-30 CVE-2023-45746 Cross-site Scripting vulnerability in Sixapart Movable Type
Cross-site scripting vulnerability in Movable Type series allows a remote authenticated attacker to inject an arbitrary script.
network
low complexity
sixapart CWE-79
5.4
2022-08-24 CVE-2022-38078 Code Injection vulnerability in Sixapart Movable Type
Movable Type XMLRPC API provided by Six Apart Ltd.
network
low complexity
sixapart CWE-94
critical
9.8
2018-09-04 CVE-2018-0672 Cross-site Scripting vulnerability in Sixapart Movable Type
Cross-site scripting vulnerability in Movable Type versions prior to Ver.
network
low complexity
sixapart CWE-79
6.1