Search Results (Refine Search)
- CPE Product Version: cpe:/a:webkul:bagisto:0.1.5
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2023-36236 |
Cross Site Scripting vulnerability in webkil Bagisto v.1.5.0 and before allows an attacker to execute arbitrary code via a crafted SVG file uplad. Published: January 16, 2024; 5:15:37 PM -0500 |
V3.1: 4.8 MEDIUM V2.0:(not available) |
CVE-2019-14933 |
Bagisto 0.1.5 allows CSRF under /admin URIs. Published: August 11, 2019; 5:15:10 PM -0400 |
V3.0: 8.8 HIGH V2.0: 6.8 MEDIUM |