Vulnerabilities > Octobercms > October > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-06-26 CVE-2024-24764 Open Redirect vulnerability in Octobercms October
October is a self-hosted CMS platform based on the Laravel PHP Framework.
network
low complexity
octobercms CWE-601
4.8
2023-12-01 CVE-2023-44381 Unspecified vulnerability in Octobercms October
October is a Content Management System (CMS) and web platform to assist with development workflow.
network
low complexity
octobercms
4.9
2023-11-29 CVE-2023-44383 Cross-site Scripting vulnerability in Octobercms October
October is a Content Management System (CMS) and web platform to assist with development workflow.
network
low complexity
octobercms CWE-79
5.4
2023-09-28 CVE-2023-43876 Cross-site Scripting vulnerability in Octobercms October 3.4.16
A Cross-Site Scripting (XSS) vulnerability in installation of October v.3.4.16 allows an attacker to execute arbitrary web scripts via a crafted payload injected into the dbhost field.
network
low complexity
octobercms CWE-79
5.4
2023-07-26 CVE-2023-37692 Cross-site Scripting vulnerability in Octobercms October 3.4.4
An arbitrary file upload vulnerability in October CMS v3.4.4 allows attackers to execute arbitrary code via a crafted file.
network
low complexity
octobercms CWE-79
5.4
2022-02-24 CVE-2022-23655 Unspecified vulnerability in Octobercms October
Octobercms is a self-hosted CMS platform based on the Laravel PHP Framework.
network
high complexity
octobercms
5.3
2021-05-03 CVE-2021-21264 Unspecified vulnerability in Octobercms October
October is a free, open-source, self-hosted CMS platform based on the Laravel PHP Framework.
local
low complexity
octobercms
5.2
2020-11-23 CVE-2020-26231 Unspecified vulnerability in Octobercms October 1.0.469/1.1.0
October is a free, open-source, self-hosted CMS platform based on the Laravel PHP Framework.
local
low complexity
octobercms
6.7
2020-11-23 CVE-2020-15249 Cross-site Scripting vulnerability in Octobercms October
October is a free, open-source, self-hosted CMS platform based on the Laravel PHP Framework.
network
low complexity
octobercms CWE-79
5.4
2020-11-23 CVE-2020-15248 Improper Privilege Management vulnerability in Octobercms October
October is a free, open-source, self-hosted CMS platform based on the Laravel PHP Framework.
local
low complexity
octobercms CWE-269
4.2