In2code / Femanager
5 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2022-44543 | The femanager extension before 5.5.2, 6.x before 6.3.3, and 7.x before 7.0.1 for TYPO3 allows creation of frontend users in restricted groups (if there is a us… | MEDIUM | 6.5 | Dec 12, 2023 |
| CVE-2023-25014 | An issue was discovered in the femanager extension before 5.5.3, 6.x before 6.3.4, and 7.x before 7.1.0 for TYPO3. Missing access checks in the InvitationContr… | HIGH | 8.6 | Feb 2, 2023 |
| CVE-2023-25013 | An issue was discovered in the femanager extension before 5.5.3, 6.x before 6.3.4, and 7.x before 7.1.0 for TYPO3. Missing access checks in the InvitationContr… | HIGH | 8.6 | Feb 2, 2023 |
| CVE-2021-36787 | The femanager extension before 5.5.1 and 6.x before 6.3.1 for TYPO3 allows XSS via a crafted SVG document. | MEDIUM | 5.4 | Aug 13, 2021 |
| CVE-2014-6292 | The femanager extension before 1.0.9 for TYPO3 allows remote frontend users to modify or delete the records of other frontend users via unspecified vectors. | MEDIUM | 6.8 | Oct 3, 2014 |
Showing 1 to 5 of 5 CVEs