James Cole
19 exploits
Active since Aug 2019
Firefly III 4.7.17.4 - Stored Cross-Site Scripting in Transaction Description and Asset Account Name
CVSS 6.1
Firefly III 4.7.17.4 - Stored Cross-Site Scripting in Transaction Description and Asset Account Name
CVSS 6.1
Firefly III 4.7.17.3 - Stored Cross-Site Scripting in Transaction Description Field
CVSS 5.4
Firefly III 4.7.17.3 - Stored Cross-Site Scripting in Asset Account Name
CVSS 5.4
Firefly III 4.7.17.3 - Stored Cross-Site Scripting in Bill Name Field
CVSS 5.4
Firefly III 4.7.17.3 - Info Disclosure
CVSS 3.3
Firefly III 4.7.17.5 - Stored Cross-Site Scripting in Liability Name Field
CVSS 5.4
firefly-iii < 5.6.0 - Cross-Site Request Forgery
CVSS 6.5
firefly-iii < 5.6.0 - Cross-Site Request Forgery
CVSS 4.3
firefly-iii < 5.6.0 - Cross-Site Request Forgery
CVSS 6.5
firefly-iii < 5.6.1 - Cross-Site Request Forgery
CVSS 8.8
firefly-iii - Unrestricted Upload of File with Dangerous Type
CVSS 8.8
firefly-iii < 5.6.2 - Open Redirect
CVSS 5.4
firefly-iii < 5.6.2 - Cross-Site Request Forgery
CVSS 6.5
firefly-iii < 5.6.2 - Cross-Site Request Forgery
CVSS 8.8
firefly-iii < 5.6.3 - Cross-Site Request Forgery
CVSS 4.3
firefly-iii <5.8.0 - Info Disclosure
CVSS 6.5
GitHub firefly-iii <6 - Info Disclosure
CVSS 9.8
firefly-iii <6.0.0 - Info Disclosure
CVSS 9.8