CVEs (15)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Fairsketch 1Rise Ultimate Project Manager Jun 17, 2026 Nov 11, 2025 5.1 MEDIUM· v4 5.4 MEDIUM· v3 N/A· v2 HTML injection vulnerability found in Fairsketch's RISE CRM Framework v3.8.1, which consist of an HTML code injection due to lack of proper validation of user inputs by sending a POST request in parameter 'first_name' in...Show more |
1Fairsketch 1Rise Ultimate Project Manager Jun 17, 2026 Nov 11, 2025 5.1 MEDIUM· v4 5.4 MEDIUM· v3 N/A· v2 HTML injection vulnerability found in Fairsketch's RISE CRM Framework v3.8.1, which consist of an HTML code injection due to lack of proper validation of user inputs by sending a POST request in parameter 'title' in '/ti...Show more |
1Fairsketch 1Rise Ultimate Project Manager Jun 17, 2026 Nov 11, 2025 5.1 MEDIUM· v4 5.4 MEDIUM· v3 N/A· v2 HTML injection vulnerability found in Fairsketch's RISE CRM Framework v3.8.1, which consist of an HTML code injection due to lack of proper validation of user inputs by sending a POST request in parameter 'custom_field_1...Show more |
1Fairsketch 1Rise Ultimate Project Manager Jun 17, 2026 Nov 11, 2025 5.1 MEDIUM· v4 5.4 MEDIUM· v3 N/A· v2 HTML injection vulnerability found in Fairsketch's RISE CRM Framework v3.8.1, which consist of an HTML code injection due to lack of proper validation of user inputs by sending a POST request in parameter 'reply_message'...Show more |
1Fairsketch 1Rise Ultimate Project Manager Jun 17, 2026 Nov 11, 2025 5.1 MEDIUM· v4 5.4 MEDIUM· v3 N/A· v2 HTML injection vulnerability found in Fairsketch's RISE CRM Framework v3.8.1, which consist of an HTML code injection due to lack of proper validation of user inputs by sending a POST request in parameter 'title' in '/ev...Show more |
1Fairsketch 1Rise Ultimate Project Manager Jun 17, 2026 Nov 11, 2025 5.1 MEDIUM· v4 5.4 MEDIUM· v3 N/A· v2 HTML injection vulnerability found in Fairsketch's RISE CRM Framework v3.8.1, which consist of an HTML code injection due to lack of proper validation of user inputs by sending a POST request in parameter 'title' in'/pro...Show more |
1Fairsketch 1Rise Ultimate Project Manager Jul 5, 2026 Nov 3, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 FairSketch Rise Ultimate Project Manager & CRM 3.9.4 is vulnerable to Insecure Permissions. A remote authenticated user can append comments or upload attachments to tickets for which they lack view or edit authorization,...Show more |
1Fairsketch 1Rise Ultimate Project Manager Jul 5, 2026 Oct 10, 2025 N/A· v4 8.1 HIGH· v3 N/A· v2 Stored HTML injection in RISE Ultimate Project Manager & CRM allows authenticated users to inject arbitrary HTML into invoices and messages. Injected content renders in emails, PDFs, and messaging/chat modules sent to cl...Show more |
1Fairsketch 1Rise Ultimate Project Manager Jul 5, 2026 Sep 29, 2025 N/A· v4 6.1 MEDIUM· v3 N/A· v2 A cross-site scripting (XSS) vulnerability in FairSketch RISE Ultimate Project Manager & CRM 3.9.4 allows an administrator to store a JavaScript payload using the file explorer in the admin dashboard when creating new fo...Show more |
1Fairsketch 1Rise Ultimate Project Manager Jun 17, 2026 Apr 22, 2025 5.3 MEDIUM· v4 4.3 MEDIUM· v3 4.0 MEDIUM· v2 A vulnerability was found in CodeCanyon RISE Ultimate Project Manager 3.8.2 and classified as problematic. Affected by this issue is some unknown functionality of the file /index.php/team_members/save_profile_image/ of t...Show more |
1Fairsketch 1Rise Ultimate Project Manager Jun 17, 2026 Sep 17, 2024 5.3 MEDIUM· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 A vulnerability has been found in CodeCanyon RISE Ultimate Project Manager 3.7.0 and classified as critical. This vulnerability affects unknown code of the file /index.php/dashboard/save. The manipulation of the argument...Show more |
1Fairsketch 1Rise Ultimate Project Manager Jun 17, 2026 Jan 15, 2024 6.9 MEDIUM· v4 6.1 MEDIUM· v3 5.0 MEDIUM· v2 A vulnerability classified as problematic was found in CodeCanyon RISE Ultimate Project Manager 3.5.3. This vulnerability affects unknown code of the file /index.php/signin. The manipulation of the argument redirect with...Show more |
1Fairsketch 1Rise Ultimate Project Manager Nov 21, 2024 Jan 23, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 SQL injection vulnerability in RISE Ultimate Project Manager 1.9 allows remote attackers to execute arbitrary SQL commands via the search parameter to index.php/knowledge_base/get_article_suggestion/. |
1Fairsketch 1Rise Ultimate Project Manager May 13, 2026 Jul 12, 2017 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 In Rise Ultimate Project Manager v1.8, XSS vulnerabilities were found in the My Profile section. All input fields are vulnerable. |
1Fairsketch 1Rise Ultimate Project Manager May 13, 2026 Jul 12, 2017 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 In Rise Ultimate Project Manager v1.8, XSS vulnerabilities were found in the Messaging section. Subject and Message fields are vulnerable. |