Vulnerabilities (CVE)

Filtered by vendor Stiltsoft Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-44724 1 Stiltsoft 1 Handy Macros For Confluence 2024-02-28 N/A 5.4 MEDIUM
The Handy Tip macro in Stiltsoft Handy Macros for Confluence Server/Data Center 3.x before 3.5.5 allows remote attackers to inject arbitrary HTML or JavaScript via a Cross-Site Scripting (XSS) vulnerability.
CVE-2020-24898 1 Stiltsoft 1 Table Filter And Charts For Confluence Server 2024-02-28 4.0 MEDIUM 6.5 MEDIUM
The Table Filter and Charts for Confluence Server app before 5.3.26 (for Atlassian Confluence) allows SSRF via the "Table from CSV" macro (URL parameter).
CVE-2020-24897 1 Stiltsoft 1 Table Filter And Charts For Confluence Server 2024-02-28 3.5 LOW 8.9 HIGH
The Table Filter and Charts for Confluence Server app before 5.3.25 (for Atlassian Confluence) allow remote attackers to inject arbitrary HTML or JavaScript via cross site scripting (XSS) through the provided Markdown markup to the "Table from CSV" macro.