Vulnerabilities > Yuba

DATE CVE VULNERABILITY TITLE RISK
2022-08-03 CVE-2022-34937 Cross-Site Request Forgery (CSRF) vulnerability in Yuba U5Cms 8.3.5
Yuba u5cms v8.3.5 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component savepage.php.
network
low complexity
yuba CWE-352
8.8
2022-06-17 CVE-2022-32442 Cross-site Scripting vulnerability in Yuba U5Cms 8.3.5
u5cms version 8.3.5 is vulnerable to Cross Site Scripting (XSS).
network
low complexity
yuba CWE-79
6.1
2022-06-17 CVE-2022-32444 Open Redirect vulnerability in Yuba U5Cms 8.3.5
An issue was discovered in u5cms verion 8.3.5 There is a URL redirection vulnerability that can cause a user's browser to be redirected to another site via /loginsave.php.
network
low complexity
yuba CWE-601
6.1