Vulnerabilities > Tiki > Tiki

DATE CVE VULNERABILITY TITLE RISK
2018-02-21 CVE-2018-7302 Cross-site Scripting vulnerability in Tiki 17.1
Tiki 17.1 allows upload of a .PNG file that actually has SVG content, leading to XSS.
network
tiki CWE-79
3.5