Vulnerabilities > Craftcms > Craft CMS > 4.2.0.1

DATE CVE VULNERABILITY TITLE RISK
2023-05-26 CVE-2023-33196 Cross-site Scripting vulnerability in Craftcms Craft CMS
Craft is a CMS for creating custom digital experiences.
network
low complexity
craftcms CWE-79
5.4
2023-05-26 CVE-2023-33197 Cross-site Scripting vulnerability in Craftcms Craft CMS
Craft is a CMS for creating custom digital experiences on the web.
network
low complexity
craftcms CWE-79
5.4
2023-05-26 CVE-2023-2817 Cross-site Scripting vulnerability in Craftcms Craft CMS
A post-authentication stored cross-site scripting vulnerability exists in Craft CMS versions <= 4.4.11.
network
low complexity
craftcms CWE-79
5.4
2023-05-19 CVE-2023-32679 Unspecified vulnerability in Craftcms Craft CMS
Craft CMS is an open source content management system.
network
low complexity
craftcms
7.2
2023-05-09 CVE-2023-31144 Unspecified vulnerability in Craftcms Craft CMS
Craft CMS is a content management system.
network
low complexity
craftcms
6.1
2023-03-03 CVE-2023-23927 Unspecified vulnerability in Craftcms Craft CMS
Craft is a platform for creating digital experiences.
network
low complexity
craftcms
5.4
2022-09-21 CVE-2022-37246 Cross-site Scripting vulnerability in Craftcms Craft CMS 4.2.0.1
Craft CMS 4.2.0.1 is affected by Cross Site Scripting (XSS) in the file src/web/assets/cp/src/js/BaseElementSelectInput.js and in specific on the line label: elementInfo.label.
network
low complexity
craftcms CWE-79
5.4
2022-09-16 CVE-2022-37247 Cross-site Scripting vulnerability in Craftcms Craft CMS 4.2.0.1
Craft CMS 4.2.0.1 is vulnerable to stored a cross-site scripting (XSS) via /admin/settings/fields page.
network
low complexity
craftcms CWE-79
5.4
2022-09-16 CVE-2022-37251 Cross-site Scripting vulnerability in Craftcms Craft CMS 4.2.0.1
Craft CMS 4.2.0.1 is vulnerable to Cross Site Scripting (XSS) via Drafts.
network
low complexity
craftcms CWE-79
5.4
2022-09-16 CVE-2022-37248 Cross-site Scripting vulnerability in Craftcms Craft CMS 4.2.0.1
Craft CMS 4.2.0.1 is vulnerable to Cross Site Scripting (XSS) via src/helpers/Cp.php.
network
low complexity
craftcms CWE-79
5.4