Known Vulnerabilities for products from Xm-online
Listed below are 2 of the newest known vulnerabilities associated with the vendor "Xm-online".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-61297 json | Not Provided | 2026-07-21 | 2026-07-22 | |
| CVE-2026-61020 json | Not Provided | 2026-07-21 | 2026-07-21 | |
| CVE-2026-61019 json | Not Provided | 2026-07-21 | 2026-07-21 | |
| CVE-2026-55488 json | Not Provided | 2026-06-24 | 2026-06-24 | |
| CVE-2026-54998 json | Not Provided | 2026-07-02 | 2026-07-07 | |
| CVE-2026-54458 json | Not Provided | 2026-07-15 | 2026-07-16 | |
| CVE-2026-53314 json | Not Provided | 2026-06-26 | 2026-06-26 | |
| CVE-2026-52945 json | Not Provided | 2026-06-24 | 2026-07-02 | |
| CVE-2026-48787 json | Not Provided | 2026-06-19 | 2026-06-22 | |
| CVE-2026-48582 json | Not Provided | 2026-06-19 | 2026-06-24 | |
| CVE-2019-15558 json | XM^online 2 Common Utils and Endpoints 0.2.1 allows SQL injection, related to Constants.java, DropSchemaResolver.java, and Sc... | 9.8 - CRITICAL | 2019-08-26 | 2019-08-30 |
| CVE-2019-15557 json | XM^online 2 User Account and Authentication server 1.0.0 allows SQL injection via a tenant key. | 9.8 - CRITICAL | 2019-08-26 | 2019-09-03 |