Vulnerabilities > Craftcms > Craft CMS > 4.0.0

DATE CVE VULNERABILITY TITLE RISK
2024-01-30 CVE-2023-36260 Injection vulnerability in Craftcms Craft CMS
An issue was discovered in the Feed Me plugin 4.6.1 for Craft CMS.
network
low complexity
craftcms CWE-74
7.5
2024-01-03 CVE-2024-21622 Unspecified vulnerability in Craftcms Craft CMS
Craft is a content management system.
network
low complexity
craftcms
8.8
2023-08-23 CVE-2023-40035 Injection vulnerability in Craftcms Craft CMS
Craft is a CMS for creating custom digital experiences on the web and beyond.
network
low complexity
craftcms CWE-74
7.2
2023-06-20 CVE-2023-33495 Cross-site Scripting vulnerability in Craftcms Craft CMS
Craft CMS through 4.4.9 is vulnerable to HTML Injection.
network
low complexity
craftcms CWE-79
6.1
2023-05-26 CVE-2023-33196 Cross-site Scripting vulnerability in Craftcms Craft CMS
Craft is a CMS for creating custom digital experiences.
network
low complexity
craftcms CWE-79
5.4
2023-05-26 CVE-2023-33197 Cross-site Scripting vulnerability in Craftcms Craft CMS
Craft is a CMS for creating custom digital experiences on the web.
network
low complexity
craftcms CWE-79
5.4
2023-05-26 CVE-2023-2817 Cross-site Scripting vulnerability in Craftcms Craft CMS
A post-authentication stored cross-site scripting vulnerability exists in Craft CMS versions <= 4.4.11.
network
low complexity
craftcms CWE-79
5.4
2023-05-19 CVE-2023-32679 Injection vulnerability in Craftcms Craft CMS
Craft CMS is an open source content management system.
network
low complexity
craftcms CWE-74
7.2
2023-05-09 CVE-2023-31144 Cross-site Scripting vulnerability in Craftcms Craft CMS
Craft CMS is a content management system.
network
low complexity
craftcms CWE-79
6.1
2023-03-03 CVE-2023-23927 Cross-site Scripting vulnerability in Craftcms Craft CMS
Craft is a platform for creating digital experiences.
network
low complexity
craftcms CWE-79
5.4