Vulnerabilities (CVE)

Filtered by vendor Infotel Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-56801 1 Infotel 1 Tasklists 2025-02-07 N/A 9.8 CRITICAL
Tasklists provides plugin tasklists for GLPI. Versions prior to 2.0.4 have a blind SQL injection vulnerability. Version 2.0.4 contains a patch for the vulnerability.
CVE-2022-39398 1 Infotel 1 Tasklists 2024-11-21 N/A 8.8 HIGH
tasklists is a tasklists plugin for GLPI (Kanban). Versions prior to 2.0.3 are vulnerable to Cross-site Scripting. Cross-site Scripting (XSS) - Create XSS in task content (when add it). This issue is patched in version 2.0.3. There are no known workarounds.