Authenticated (Contributor+) Stored CrossSite Scripting in the URL Parameter in Multiple Widgets vulnerability
11 September, 2024
Arbitrary SVG File Download vulnerability
28 June, 2024
Authenticated (Contributor+) DOMBased Stored CrossSite Scripting vulnerability
21 May, 2024
Auth. Stored CrossSite Scripting vulnerability
26 March, 2024
Authenticated Stored CrossSite Scripting via get_image_alt vulnerability
7 February, 2024