← Back

Webthings Gateway

webthings_gateway

Vendor: Mozilla • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Mozilla
1Webthings Gateway
Jun 17, 2026
Feb 28, 2020
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
A reflected XSS vulnerability exists within the gateway, allowing an attacker to craft a specialized URL which could steal the user's authentication token. When combined with CVE-2020-6803, an attacker could fully compro...Show more
A reflected XSS vulnerability exists within the gateway, allowing an attacker to craft a specialized URL which could steal the user's authentication token. When combined with CVE-2020-6803, an attacker could fully compromise the system.Show less
1Mozilla
1Webthings Gateway
Jun 17, 2026
Feb 28, 2020
N/A· v4
6.1 MEDIUM· v3
5.8 MEDIUM· v2
An open redirect is present on the gateway's login page, which could cause a user to be redirected to a malicious site after logging in.