Vulnerabilities (CVE)

Filtered by vendor Igniterealtime Subscribe
Total 41 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-6510 1 Igniterealtime 1 Openfire 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in login.jsp in the Admin Console in Openfire 3.6.0a and earlier allows remote attackers to inject arbitrary web script or HTML via the url parameter.