Vulnerabilities > Backdropcms > Low

DATE CVE VULNERABILITY TITLE RISK
2022-02-15 CVE-2022-24590 Cross-site Scripting vulnerability in Backdropcms Backdrop 1.21.1
A stored cross-site scripting (XSS) vulnerability in the Add Link function of BackdropCMS v1.21.1 allows attackers to execute arbitrary web scripts or HTML.
3.5
2019-12-19 CVE-2019-19900 Cross-site Scripting vulnerability in Backdropcms Backdrop CMS
An issue was discovered in Backdrop CMS 1.13.x before 1.13.5 and 1.14.x before 1.14.2.
3.5
2019-12-19 CVE-2019-19901 Cross-site Scripting vulnerability in Backdropcms Backdrop CMS
An issue was discovered in Backdrop CMS 1.13.x before 1.13.5 and 1.14.x before 1.14.2.
3.5
2019-12-19 CVE-2019-19903 Cross-site Scripting vulnerability in Backdropcms Backdrop CMS
An issue was discovered in Backdrop CMS 1.14.x before 1.14.2.
3.5
2018-12-20 CVE-2018-1000813 Cross-site Scripting vulnerability in Backdropcms Backdrop CMS
Backdrop CMS version 1.11.0 and earlier contains a Cross Site Scripting (XSS) vulnerability in Sanitization of custom class names used on blocks and layouts.
3.5