Vulnerabilities

    CVE-2018-3740 HTML injection/XSS

    CVE-2015-3206 checkPassword() does not verify KDC authenticity

    CVE-2018-19443 Man-in-the-Middle

    CVE-2018-9207 Arbitrary file upload

    CVE-2014-7819 Arbitrary file existence disclosure

    CVE-2018-19352 Cross-site Scripting

    CVE-2018-19351 Cross-site Scripting

    CVE-2018-18476 SQL Injection

    CVE-2015-5159 Denial of Service

    CVE-2012-0838 OGNL expression unexpected evaluation on conversion error