Vulnerabilities > Fork CMS > Low

DATE CVE VULNERABILITY TITLE RISK
2022-03-24 CVE-2022-0145 Cross-site Scripting vulnerability in Fork-Cms Fork CMS
Cross-site Scripting (XSS) - Stored in GitHub repository forkcms/forkcms prior to 5.11.1.
network
fork-cms CWE-79
3.5
2021-10-22 CVE-2020-23049 Cross-site Scripting vulnerability in Fork-Cms Fork CMS 5.8.0
Fork CMS Content Management System v5.8.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the `Displayname` field when using the `Add`, `Edit` or `Register' functions.
network
fork-cms CWE-79
3.5
2019-01-09 CVE-2018-20682 Cross-site Scripting vulnerability in Fork-Cms Fork CMS 5.0.6
Fork CMS 5.0.6 allows stored XSS via the private/en/settings facebook_admin_ids parameter (aka "Admin ids" input in the Facebook section).
network
fork-cms CWE-79
3.5
2018-01-04 CVE-2018-5215 Cross-site Scripting vulnerability in Fork-Cms Fork CMS 5.0.7
Fork CMS 5.0.7 has XSS in /private/en/pages/edit via the title parameter.
network
fork-cms CWE-79
3.5