Filtered by vendor Tad Book3 Project Subscriptions
Filtered by product Tad Book3 Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-41974 1 Tad Book3 Project 1 Tad Book3 2024-09-17 9.1 Critical
Tad Book3 editing book page does not perform identity verification. Remote attackers can use the vulnerability to view and modify arbitrary content of books without permission.
CVE-2021-41563 1 Tad Book3 Project 1 Tad Book3 2024-09-16 6.1 Medium
Tad Book3 editing book function does not filter special characters. Unauthenticated attackers can remotely inject JavaScript syntax and execute stored XSS attacks.