Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-2421 1 Felisify 1 Sambabox 2026-06-06 9.8 Critical
Improper Control of Generation of Code ('Code Injection') vulnerability in Profelis Informatics SambaBox allows Code Injection. This issue affects SambaBox: before 5.1.
CVE-2025-2488 1 Felisify 1 Sambabox 2026-06-06 6.1 Medium
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Profelis Informatics SambaBox allows Cross-Site Scripting (XSS). This issue affects SambaBox: before 5.1.