Michaelschwarz Ajax.Net-Professional vulnerabilities
2 known vulnerabilities affecting michaelschwarz/ajax.net-professional.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2021-43853P4MEDIUMCVSS 5.4fixed in 21.12.22.12021-12-22
CVE-2021-43853 [MEDIUM] CWE-79 CVE-2021-43853: Ajax.NET Professional (AjaxPro) is an AJAX framework available for Microsoft ASP.NET. Affected versi
Ajax.NET Professional (AjaxPro) is an AJAX framework available for Microsoft ASP.NET. Affected versions of this package are vulnerable to JavaScript object injection which may result in cross site scripting when leveraged by a malicious user. The affected core relates to JavaScript object creation when parsing json input. Releases before version 21.1
nvd
CVE-2023-49289P4MEDIUMCVSS 5.4fixed in 21.12.22.12023-12-05
CVE-2023-49289 [MEDIUM] CWE-79 CVE-2023-49289: Ajax.NET Professional (AjaxPro) is an AJAX framework for Microsoft ASP.NET which will create proxy J
Ajax.NET Professional (AjaxPro) is an AJAX framework for Microsoft ASP.NET which will create proxy JavaScript classes that are used on client-side to invoke methods on the web server. Affected versions of this package are vulnerable cross site scripting attacks. Releases before version 21.12.22.1 are affected. Users are advised to upgrade. There are
nvd