Vulnerability Database

With exploit

Composer icon craftcms / cms

Title Severity Exploit Date Affected Version
CVE-2022-29933 High May 9, 2022 < 3.7.36
XSS Injection Vulnerability Low Apr 5, 2022 < 3.7.29
CVE-2022-28378 Medium Apr 3, 2022 < 3.7.29
CSV injection in Craft CMS High Oct 4, 2021 < 3.7.14
CVE-2021-41824 High Sep 30, 2021 >= 3.4.0 < 3.7.14
CVE-2021-27902 Medium Jun 30, 2021 < 3.6.0
CVE-2021-27903 Critical Jun 30, 2021 < 3.6.7
CVE-2021-32470 Medium May 7, 2021 < 3.6.13

Composer icon typo3 / cms

Title Severity Exploit Date Affected Version
Authentication Bypass in TYPO3 CMS Medium Jun 5, 2024 >= 7.0.0 < 7.6.30
>= 8.0.0 < 8.7.17
>= 9.0.0 < 9.3.2
Information Disclosure in TYPO3 CMS Medium Jun 5, 2024 >= 7.6.0 < 7.6.22
>= 8.0.0 < 8.7.5
Insecure Deserialization & Arbitrary Code Execution in TYPO3 CMS High Jun 5, 2024 >= 7.0.0 < 7.6.30
>= 8.0.0 < 8.7.17
>= 9.0.0 < 9.3.2
Information Disclosure in TYPO3 CMS Low Jun 5, 2024 >= 7.6.0 < 7.6.22
>= 8.0.0 < 8.7.5
Privilege Escalation & SQL Injection in TYPO3 CMS High Jun 5, 2024 >= 8.5.0 < 8.7.17
>= 9.0.0 < 9.3.2
TYPO3 Remote Code Execution in third party library swiftmailer High Jun 5, 2024 >= 6.2.0 < 6.2.30
>= 7.6.0 < 7.6.15
>= 8.0.0 < 8.5.1
Arbitrary Code Execution in TYPO3 CMS Critical Jun 5, 2024 >= 7.6.0 < 7.6.22
>= 8.0.0 < 8.7.5
Insecure Deserialization in TYPO3 CMS High Jun 5, 2024 >= 8.5.0 < 8.7.17
>= 9.0.0 < 9.3.2
Cross-Site Scripting (XSS) vulnerability in typolinks Medium Jun 5, 2024 >= 6.2.0 < 6.2.26
>= 7.6.0 < 7.6.10
>= 8.0.0 < 8.2.1
Cross-Site Scripting (XSS) in TYPO3 Backend Medium Jun 5, 2024 >= 6.2.0 < 6.2.27
>= 7.6.0 < 7.6.11
>= 8.0.0 < 8.3.1