Skip to content
Noroxi

appfire records

2 published records for vendor appfire.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 22
  2. 23

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

Attack profile

All records

2 records
  • A cross-site scripting (XSS) vulnerability in Time to SLA plugin v10.13.5 allows attackers to execute arbitrary web scripts or HTML via a cr

    MediumCVSS 6.1No exploitEPSS 0%

    appfire · time to slaSep 14, 2023

  • The Appfire Jira Misc Custom Fields (JMCF) app 2.4.6 for Atlassian Jira allows XSS via a crafted project name to the Add Auto Indexing Rule

    MediumCVSS 5.4No exploitEPSS 1%

    appfire · jira misc custom fieldsJul 7, 2022