Vulnerabilities > Backdropcms > Backdrop CMS > 1.13.1

DATE CVE VULNERABILITY TITLE RISK
2019-12-19 CVE-2019-19903 Cross-site Scripting vulnerability in Backdropcms Backdrop CMS
An issue was discovered in Backdrop CMS 1.14.x before 1.14.2.
3.5
2019-12-19 CVE-2019-19902 Information Exposure vulnerability in Backdropcms Backdrop CMS
An issue was discovered in Backdrop CMS 1.13.x before 1.13.5 and 1.14.x before 1.14.2.
network
low complexity
backdropcms CWE-200
6.5
2019-12-19 CVE-2019-19901 Cross-site Scripting vulnerability in Backdropcms Backdrop CMS
An issue was discovered in Backdrop CMS 1.13.x before 1.13.5 and 1.14.x before 1.14.2.
3.5
2019-12-19 CVE-2019-19900 Cross-site Scripting vulnerability in Backdropcms Backdrop CMS
An issue was discovered in Backdrop CMS 1.13.x before 1.13.5 and 1.14.x before 1.14.2.
3.5
2019-08-08 CVE-2019-14771 Improper Input Validation vulnerability in Backdropcms Backdrop CMS
Backdrop CMS 1.12.x before 1.12.8 and 1.13.x before 1.13.3 allows the upload of entire-site configuration archives through the user interface or command line.
network
backdropcms CWE-20
critical
9.3