Plainware / Shiftcontroller
5 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2024-9435 | ShiftController Employee Shift Scheduling <= 4.9.66 - Reflected Cross-Site Scripting | MEDIUM | 6.1 | Oct 4, 2024 |
| CVE-2024-4733 | ShiftController Employee Shift Scheduling <= 4.9.57 - Authenticated (Contributor+) PHP Object Injection | HIGH | 7.5 | May 16, 2024 |
| CVE-2023-29425 | WordPress ShiftController Employee Shift Scheduling Plugin <= 4.9.23 is vulnerable to Cross Site Request Forgery (CSRF) | HIGH | 8.8 | Nov 12, 2023 |
| CVE-2023-29424 | WordPress ShiftController Employee Shift Scheduling Plugin <= 4.9.23 is vulnerable to Cross Site Scripting (XSS) | HIGH | 7.1 | Jun 26, 2023 |
| CVE-2023-1978 | ShiftController Employee Shift Scheduling <= 4.9.25 - Reflected Cross-Site Scripting via Query String | MEDIUM | 6.1 | Jun 9, 2023 |
Showing 1 to 5 of 5 CVEs