Filtered by vendor Plane Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-2268 1 Plane 1 Plane 2024-09-05 7.1 High
Plane version 0.7.1 allows an unauthenticated attacker to view all stored server files of all users.
CVE-2023-30791 1 Plane 1 Plane 2024-08-02 7.1 High
Plane version 0.7.1-dev allows an attacker to change the avatar of his profile, which allows uploading files with HTML extension that interprets both HTML and JavaScript.