collective.task是Collective开源的一个 Plone 的任务管理工具。 collective.task 3.0.9之前版本存在跨站脚本漏洞,该漏洞源于文件 src/collective/task/browser/table.py 的函数 renderCell/AssignedGroupColumn,操纵导致跨站脚本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | collective.task | 3.0.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-24377 | 7.4 HIGH | Command Injection |
| CVE-2022-40001 | FeehiCMS 跨站脚本漏洞 | |
| CVE-2022-46634 | TOTOLINK A7100RU 操作系统命令注入漏洞 | |
| CVE-2022-46631 | TOTOLINK A7100RU 操作系统命令注入漏洞 | |
| CVE-2022-46393 | Mbed TLS 缓冲区错误漏洞 | |
| CVE-2022-46392 | Mbed TLS 安全漏洞 | |
| CVE-2022-45969 | Alist 路径遍历漏洞 | |
| CVE-2022-45338 | Exact Synergy Enterprise 代码问题漏洞 | |
| CVE-2022-45033 | Expense Tracker 跨站脚本漏洞 | |
| CVE-2022-44236 | Beijing Zed-3 Technologies VoIP simpliclty 安全漏洞 | |
| CVE-2022-44235 | Beijing Zed-3 Technologies VoIP simpliclty 跨站脚本漏洞 | |
| CVE-2022-40373 | FeehiCMS 跨站脚本漏洞 | |
| CVE-2022-40004 | Thingsboard 跨站脚本漏洞 | |
| CVE-2022-40002 | FeehiCMS 跨站脚本漏洞 | |
| CVE-2022-40000 | FeehiCMS 跨站脚本漏洞 | |
| CVE-2021-39428 | EyouCms 跨站脚本漏洞 | |
| CVE-2021-39427 | 188Jianzhan 跨站脚本漏洞 | |
| CVE-2021-39426 | SeaCMS 代码注入漏洞 | |
| CVE-2021-36573 | FeehiCMS 跨站脚本漏洞 | |
| CVE-2021-36572 | FeehiCMS 跨站脚本漏洞 |
Showing top 20 of 27 CVEs. View all on vendor page → →
No comments yet