Vulnerabilities (CVE)

Filtered by vendor Pgyer Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-44080 1 Pgyer 1 Codefever 2024-11-21 N/A 9.8 CRITICAL
An issue in PGYER codefever v.2023.8.14-2ce4006 allows a remote attacker to execute arbitrary code via a crafted request to the branchList component.
CVE-2023-26817 1 Pgyer 1 Codefever 2024-11-21 N/A 8.8 HIGH
codefever before 2023.2.7-commit-b1c2e7f was discovered to contain a remote code execution (RCE) vulnerability via the component /controllers/api/user.php.