Filtered by vendor Pkp.sfu
Subscribe
Total
3 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2024-24511 | 1 Pkp.sfu | 1 Open Journal Systems | 2025-04-18 | N/A | 6.1 MEDIUM |
Cross Site Scripting vulnerability in Pkp OJS v.3.4 allows an attacker to execute arbitrary code via the Input Title component. | |||||
CVE-2024-24512 | 1 Pkp.sfu | 1 Open Journal Systems | 2025-04-18 | N/A | 6.1 MEDIUM |
Cross Site Scripting vulnerability in Pkp OJS v.3.4 allows an attacker to execute arbitrary code via the input subtitle component. | |||||
CVE-2024-25434 | 1 Pkp.sfu | 1 Open Journal Systems | 2025-04-16 | N/A | 5.4 MEDIUM |
A cross-site scripting (XSS) vulnerability in Pkp Ojs v3.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Publicname parameter. |