Filtered by vendor Springbootmovie Project Subscriptions
Filtered by product Springbootmovie Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-29001 1 Springbootmovie Project 1 Springbootmovie 2024-11-21 7.2 High
In SpringBootMovie <=1.2, the uploaded file suffix parameter is not filtered, resulting in arbitrary file upload vulnerability
CVE-2022-28588 1 Springbootmovie Project 1 Springbootmovie 2024-11-21 5.4 Medium
In SpringBootMovie <=1.2 when adding movie names, malicious code can be stored because there are no filtering parameters, resulting in stored XSS.