← Back

Crea8social

crea8social

Vendor: Crea8social • 5 CVEs

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Crea8social
1Crea8social
Jun 17, 2026
Mar 29, 2018
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In Crea8social 2018.2, there is Stored Cross-Site Scripting via a User Profile.
1Crea8social
1Crea8social
Jun 17, 2026
Mar 29, 2018
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In Crea8social 2018.2, there is Reflected Cross-Site Scripting via the term parameter to the /search URI.
1Crea8social
1Crea8social
Jun 17, 2026
Mar 29, 2018
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In Crea8social 2018.2, there is Stored Cross-Site Scripting via a post comment.
1Crea8social
1Crea8social
Jun 17, 2026
Mar 29, 2018
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In Crea8social 2018.2, there is Stored Cross-Site Scripting via a post.
1Crea8social
1Crea8social
May 6, 2026
Jan 16, 2015
N/A· v4
N/A· v3
3.5 LOW· v2
Cross-site scripting (XSS) vulnerability in the Games feature in Crea8Social 2.0 allows remote authenticated users to inject arbitrary web script or HTML via the Game Content field in Add Game.