VYPR

Neon

by Laborator

CVEs (3)

  • CVE-2019-20141MedDec 30, 2019
    risk 0.40cvss 6.1epss 0.05

    An XSS issue was discovered in the Laborator Neon theme 2.0 for WordPress via the data/autosuggest-remote.php q parameter.

  • CVE-2020-23576MedAug 27, 2020
    risk 0.35cvss 5.4epss 0.01

    Laborator Neon dashboard v3 is affected by stored Cross Site Scripting (XSS) via the chat tab.

  • CVE-2020-13890MedJun 6, 2020
    risk 0.35cvss 5.4epss 0.01

    The Neon theme 2.0 before 2020-06-03 for Bootstrap allows XSS via an Add Task Input operation in a dashboard.