Vulnerabilities > Theforeman > Katello > 3.6.0

DATE CVE VULNERABILITY TITLE RISK
2019-11-25 CVE-2019-14825 Cleartext Storage of Sensitive Information vulnerability in Theforeman Katello
A cleartext password storage issue was discovered in Katello, versions 3.x.x.x before katello 3.12.0.9.
network
low complexity
theforeman CWE-312
2.7
2019-01-13 CVE-2018-16887 Cross-site Scripting vulnerability in multiple products
A cross-site scripting (XSS) flaw was found in the katello component of Satellite.
3.5