Dated News ProjectCVEs & Vulnerabilities
4 CVEs affecting Dated News Project products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
4 CVEs→ All vendors
Most Affected Products
dated news 4
CVE-2021-36792HIGH
The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 has incorrect Access Control for confirming various applications.
13 Aug 2021
7.2
CVSS
CVE-2021-36791MEDIUM
The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 allows Information Disclosure of application registration data.
13 Aug 2021
5.3
CVSS
CVE-2021-36790MEDIUM
The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 allows XSS.
13 Aug 2021
6.1
CVSS
CVE-2021-36789CRITICAL
The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 allows SQL Injection.
13 Aug 2021
9.8
CVSS
← PrevPage 1 / 1Next →