CVEs (1)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Pfsense 2Pfsense Pfsense PlusNov 21, 2024 Jan 26, 2022 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 /usr/local/www/pkg.php in pfSense CE before 2.6.0 and pfSense Plus before 22.01 uses $_REQUEST['pkg_filter'] in a PHP echo call, causing XSS. |