Vulnerabilities (CVE)

Filtered by vendor Internet2 Subscribe
Filtered by product Grouper
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-59714 1 Internet2 1 Grouper 2025-10-08 N/A 6.5 MEDIUM
In Internet2 Grouper 5.17.1 before 5.20.5, group admins who are not Grouper sysadmins can configure loader jobs.
CVE-2018-19794 1 Internet2 1 Grouper 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Cross-site scripting (XSS) vulnerability in UiV2Public.index in Internet2 Grouper 2.2 and 2.3 allows remote attackers to inject arbitrary web script or HTML via the code parameter.