Vulnerabilities > Theforeman > Katello > Low

DATE CVE VULNERABILITY TITLE RISK
2019-12-05 CVE-2013-0283 Cross-site Scripting vulnerability in Theforeman Katello
Katello: Username in Notification page has cross site scripting
network
theforeman CWE-79
3.5
2019-11-25 CVE-2019-14825 Cleartext Storage of Sensitive Information vulnerability in Theforeman Katello
A cleartext password storage issue was discovered in Katello, versions 3.x.x.x before katello 3.12.0.9.
network
low complexity
theforeman CWE-312
2.7
2019-01-13 CVE-2018-16887 Cross-site Scripting vulnerability in multiple products
A cross-site scripting (XSS) flaw was found in the katello component of Satellite.
3.5