Filtered by vendor Couchcms Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-41609 1 Couchcms 1 Couchcms 2023-09-14 6.1 Medium
An open redirect vulnerability in the sanitize_url() parameter of CouchCMS v2.3 allows attackers to redirect a victim user to an arbitrary web site via a crafted URL.
CVE-2018-7662 1 Couchcms 1 Couch 2022-10-03 N/A
Couch through 2.0 allows remote attackers to discover the full path via a direct request to includes/mysql2i/mysql2i.func.php or addons/phpmailer/phpmailer.php.