Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jf3q-9x2q-r3hj

Опубликовано: 01 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.3

Описание

Missing Authorization vulnerability in Upqode Plum: Spin Wheel & Email Pop-up allows Accessing Functionality Not Properly Constrained by ACLs, Stored XSS.This issue affects Plum: Spin Wheel & Email Pop-up: from n/a through 2.0.

Missing Authorization vulnerability in Upqode Plum: Spin Wheel & Email Pop-up allows Accessing Functionality Not Properly Constrained by ACLs, Stored XSS.This issue affects Plum: Spin Wheel & Email Pop-up: from n/a through 2.0.

EPSS

Процентиль: 41%
0.00188
Низкий

8.3 High

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 8.3
nvd
больше 1 года назад

Missing Authorization vulnerability in Upqode Plum: Spin Wheel & Email Pop-up allows Accessing Functionality Not Properly Constrained by ACLs, Stored XSS.This issue affects Plum: Spin Wheel & Email Pop-up: from n/a through 2.0.

EPSS

Процентиль: 41%
0.00188
Низкий

8.3 High

CVSS3

Дефекты

CWE-862