Known Vulnerabilities for Ifme by If-me
Listed below are 5 of the newest known vulnerabilities associated with "Ifme" by "If-me".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-25992 json | In Ifme, versions 1.0.0 to v.7.33.2 don’t properly invalidate a user’s session even after the user initiated logout. It m... | 9.8 - CRITICAL | 2022-02-10 | 2022-02-22 |
| CVE-2021-25991 json | In Ifme, versions v5.0.0 to v7.32 are vulnerable against an improper access control, which makes it possible for admins to ba... | 7.3 - HIGH | 2021-12-29 | 2022-01-10 |
| CVE-2021-25990 json | In “ifme”, versions v7.22.0 to v7.31.4 are vulnerable against self-stored XSS in the contacts field as it allows loading ... | 5.4 - MEDIUM | 2021-12-29 | 2022-01-06 |
| CVE-2021-25989 json | In “ifme”, versions 1.0.0 to v7.31.4 are vulnerable against stored XSS vulnerability in the markdown editor. It can be ex... | 5.4 - MEDIUM | 2021-12-29 | 2022-01-06 |
| CVE-2021-25988 json | In “ifme”, versions 1.0.0 to v7.31.4 are vulnerable against stored XSS vulnerability (notifications section) which can be... | 5.4 - MEDIUM | 2021-12-29 | 2022-01-06 |