CVE-2018-5687
Published Jan 14, 2018NewsBee allows XSS via the Company Name field in the Settings under admin/admin.php.
Vendor/product archive
2 CVEs tagged to newsbee_project / newsbee — 1 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.
NewsBee allows XSS via the Company Name field in the Settings under admin/admin.php.
SQL injection vulnerability in NewsBee CMS allow remote attackers to execute arbitrary SQL commands.