Total vulnerabilities in the database
ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
Software | From | Fixed in |
---|---|---|
adobe / coldfusion | 2021 | 2021.x |
adobe / coldfusion | 2021-update1 | 2021-update1.x |
adobe / coldfusion | 2021-update2 | 2021-update2.x |
adobe / coldfusion | 2021-update3 | 2021-update3.x |
adobe / coldfusion | 2021-update4 | 2021-update4.x |
adobe / coldfusion | 2021-update5 | 2021-update5.x |
adobe / coldfusion | 2021-update10 | 2021-update10.x |
adobe / coldfusion | 2021-update11 | 2021-update11.x |
adobe / coldfusion | 2021-update6 | 2021-update6.x |
adobe / coldfusion | 2021-update7 | 2021-update7.x |
adobe / coldfusion | 2021-update8 | 2021-update8.x |
adobe / coldfusion | 2021-update9 | 2021-update9.x |
adobe / coldfusion | 2023 | 2023.x |
adobe / coldfusion | 2023-update1 | 2023-update1.x |
adobe / coldfusion | 2023-update2 | 2023-update2.x |
adobe / coldfusion | 2023-update3 | 2023-update3.x |
adobe / coldfusion | 2023-update4 | 2023-update4.x |
adobe / coldfusion | 2023-update5 | 2023-update5.x |
adobe / coldfusion | 2021-update12 | 2021-update12.x |
adobe / coldfusion | 2021-update13 | 2021-update13.x |
adobe / coldfusion | 2021-update14 | 2021-update14.x |
adobe / coldfusion | 2021-update15 | 2021-update15.x |
adobe / coldfusion | 2021-update16 | 2021-update16.x |
adobe / coldfusion | 2021-update17 | 2021-update17.x |
adobe / coldfusion | 2021-update18 | 2021-update18.x |
adobe / coldfusion | 2023-update10 | 2023-update10.x |
adobe / coldfusion | 2023-update11 | 2023-update11.x |
adobe / coldfusion | 2023-update12 | 2023-update12.x |
adobe / coldfusion | 2023-update6 | 2023-update6.x |
adobe / coldfusion | 2023-update7 | 2023-update7.x |
adobe / coldfusion | 2023-update8 | 2023-update8.x |
adobe / coldfusion | 2023-update9 | 2023-update9.x |
adobe / coldfusion | 2025 | 2025.x |