Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-35612 1 Bevywise 1 Mqttroute 2025-05-15 5.4 Medium
A cross-site scripting (XSS) vulnerability in MQTTRoute v3.3 and below allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the dashboard name text field.
CVE-2022-35611 1 Bevywise 1 Mqttroute 2025-05-15 4.3 Medium
A Cross-Site Request Forgery (CSRF) in MQTTRoute v3.3 and below allows attackers to create and remove dashboards.