Vulnerabilities > Bludit > Bludit > 3.14.1

DATE CVE VULNERABILITY TITLE RISK
2023-09-01 CVE-2023-24675 Cross-site Scripting vulnerability in Bludit 3.14.1
Cross Site Scripting Vulnerability in BluditCMS v.3.14.1 allows attackers to execute arbitrary code via the Categories Friendly URL.
network
low complexity
bludit CWE-79
4.8
2023-06-16 CVE-2023-34845 Unrestricted Upload of File with Dangerous Type vulnerability in Bludit 3.14.1
Bludit v3.14.1 was discovered to contain an arbitrary file upload vulnerability in the component /admin/new-content.
network
low complexity
bludit CWE-434
5.4
2023-05-17 CVE-2023-31698 Cross-site Scripting vulnerability in Bludit 3.14.1
Bludit v3.14.1 is vulnerable to Stored Cross Site Scripting (XSS) via SVG file on site logo.
network
low complexity
bludit CWE-79
5.4