Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2024-22776 2 Ellite, Wallosapp 2 Wallos, Wallos 2025-06-03 4.7 Medium
Wallos 0.9 is vulnerable to Cross Site Scripting (XSS) in all text-based input fields without proper validation, excluding those requiring specific formats like date fields.
CVE-2024-29320 2 Ellite, Wallosapp 2 Wallos, Wallos 2025-06-03 8.1 High
Wallos before 1.15.3 is vulnerable to SQL Injection via the category and payment parameters to /subscriptions/get.php.