Filtered by vendor Fork-cms Subscriptions
Total 25 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-35589 1 Fork-cms 1 Fork Cms 2024-08-03 4.8 Medium
A cross-site scripting (XSS) issue in the Fork version 5.9.3 allows remote attackers to inject JavaScript via the "publish_on_time" Parameter.
CVE-2022-35587 1 Fork-cms 1 Fork Cms 2024-08-03 4.8 Medium
A cross-site scripting (XSS) issue in the Fork version 5.9.3 allows remote attackers to inject JavaScript via the "publish_on_date" Parameter
CVE-2022-1064 1 Fork-cms 1 Fork Cms 2024-08-02 8.8 High
SQL injection through marking blog comments on bulk as spam in GitHub repository forkcms/forkcms prior to 5.11.1.
CVE-2022-0153 1 Fork-cms 1 Fork Cms 2024-08-02 7.5 High
SQL Injection in GitHub repository forkcms/forkcms prior to 5.11.1.
CVE-2022-0145 1 Fork-cms 1 Fork Cms 2024-08-02 5.4 Medium
Cross-site Scripting (XSS) - Stored in GitHub repository forkcms/forkcms prior to 5.11.1.