← Back

Webobjects

webobjects

Vendor: Apple • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Apple
1Webobjects
Jun 17, 2026
Sep 14, 2022
N/A· v4
6.1 MEDIUM· v3
N/A· v2
Project Wonder WebObjects 1.0 through 5.4.3 is vulnerable to Arbitrary HTTP Header injection and URL- or Header-based XSS reflection in all web-server adaptor interfaces.
1Apple
1Webobjects
Apr 29, 2026
Nov 9, 2011
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in Apple WebObjects 5.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
1Apple
1Webobjects
Apr 16, 2026
Apr 4, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in WebObjects.exe in the WebObjects Developer 4.5 package allows remote attackers to cause a denial of service via an HTTP request with long headers such as Accept.