cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches fortime-sheets time-sheets

Direction: descending
Aug 16, 2025

Time Sheets # CVE-2025-49054

CVE, Research URL

CVE-2025-49054

Application

Time Sheets

Date
Aug 14, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in mrdenny Time Sheets allows Reflected XSS. This issue affects Time Sheets: from n/a through 2.1.3.
Affected versions
Min -, max -.
Status
vulnerable
Jun 07, 2024

Time Sheets # CVE-2017-18581

CVE, Research URL

CVE-2017-18581

Application

Time Sheets

Date
Aug 22, 2019
Research Description
The time-sheets plugin before 1.5.0 for WordPress has XSS via the old timesheet list.
Affected versions
Min -, max -.
Status
vulnerable

Time Sheets # CVE-2017-18582

CVE, Research URL

CVE-2017-18582

Application

Time Sheets

Date
Aug 22, 2019
Research Description
The time-sheets plugin before 1.5.2 for WordPress has multiple XSS issues.
Affected versions
Min -, max -.
Status
vulnerable

Time Sheets # CVE-2023-0893

CVE, Research URL

CVE-2023-0893

Application

Time Sheets

Date
Apr 10, 2023
Research Description
The Time Sheets WordPress plugin before 1.29.3 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)
Affected versions
Min -, max -.
Status
vulnerable