Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Moderate

CVE-2021-38699

Disclosure Date: August 15, 2021 (last updated November 28, 2024)
TastyIgniter 3.0.7 allows XSS via /account, /reservation, /admin/dashboard, and /admin/system_logs.
Attacker Value
Unknown

CVE-2022-38256

Disclosure Date: September 08, 2022 (last updated October 08, 2023)
TastyIgniter v3.5.0 was discovered to contain a cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
Attacker Value
Unknown

CVE-2022-0602

Disclosure Date: April 05, 2022 (last updated October 07, 2023)
Cross-site Scripting (XSS) - DOM in GitHub repository tastyigniter/tastyigniter prior to 3.3.0.
Attacker Value
Unknown

CVE-2022-23378

Disclosure Date: February 09, 2022 (last updated October 07, 2023)
A Cross-Site Scripting (XSS) vulnerability exists within the 3.2.2 version of TastyIgniter. The "items%5B0%5D%5Bpath%5D" parameter of a request made to /admin/allergens/edit/1 is vulnerable.