← Back

Ttpsc

ttpsc

2 CVEs • 1 product

Products (1)

Click to collapse
Toggle
The Scheduler
the_scheduler

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ttpsc
1The Scheduler
Nov 21, 2024
Jul 13, 2022
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
The Transition Scheduler add-on 6.5.0 for Atlassian Jira is prone to stored XSS via the project name to the creation function.
1Ttpsc
1The Scheduler
Nov 21, 2024
Aug 7, 2019
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The Transition Technologies "The Scheduler" app 5.1.3 for Jira allows XXE due to a weakly configured/parameterized XML parser. It was fixed in the versions 5.2.1 and 3.3.7