Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2023-28874

Disclosure Date: December 09, 2023 (last updated February 25, 2025)
The next parameter in the /accounts/login endpoint of Seafile 9.0.6 allows attackers to redirect users to arbitrary sites.
Attacker Value
Unknown

CVE-2023-28873

Disclosure Date: December 09, 2023 (last updated February 25, 2025)
An XSS issue in wiki and discussion pages in Seafile 9.0.6 allows attackers to inject JavaScript into the Markdown editor.