Skip to main content

Vendor/product archive

citadel / citadel CVEs

Beta · best-effort

2 CVEs tagged to citadel / citadel0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2023-44272

Published Oct 4, 2023

A cross-site scripting vulnerability exists in Citadel versions prior to 994. When a malicious user sends an instant message with some JavaScript code, the script may be executed…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-1756

Published Jun 21, 2011

modules/xmpp/serv_xmpp.c in Citadel 7.86 and earlier does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1