Filtered by vendor Novel-plus Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-37847 1 Novel-plus 1 Novel-plus 2024-10-09 9.8 Critical
novel-plus v3.6.2 was discovered to contain a SQL injection vulnerability.
CVE-2024-33383 1 Novel-plus 1 Novel-plus 2024-08-02 7.5 High
Arbitrary File Read vulnerability in novel-plus 4.3.0 and before allows a remote attacker to obtain sensitive information via a crafted GET request using the filePath parameter.