Vulnerabilities
Vulnerable Software
Craftcms:  >> Craft Cms  >> 3.5.12  Security Vulnerabilities
Craft CMS before 3.7.29 allows XSS.
CVSS Score
6.1
EPSS Score
0.003
Published
2022-04-03
Craft CMS before 3.7.14 allows CSV injection.
CVSS Score
8.8
EPSS Score
0.005
Published
2021-09-30
An issue was discovered in Craft CMS before 3.6.0. In some circumstances, a potential XSS vulnerability existed in connection with front-end forms that accepted user uploads.
CVSS Score
6.1
EPSS Score
0.004
Published
2021-06-30
An issue was discovered in Craft CMS before 3.6.7. In some circumstances, a potential Remote Code Execution vulnerability existed on sites that did not restrict administrative changes (if an attacker were somehow able to hijack an administrator's session).
CVSS Score
9.8
EPSS Score
0.038
Published
2021-06-30
Craft CMS before 3.6.13 has an XSS vulnerability.
CVSS Score
6.1
EPSS Score
0.003
Published
2021-05-07


Contact Us

Shodan ® - All rights reserved