Vulnerabilities > Octobercms > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-06-26 CVE-2024-24764 Open Redirect vulnerability in Octobercms October
October is a self-hosted CMS platform based on the Laravel PHP Framework.
network
low complexity
octobercms CWE-601
4.8
2023-12-01 CVE-2023-44381 Code Injection vulnerability in Octobercms October
October is a Content Management System (CMS) and web platform to assist with development workflow.
network
low complexity
octobercms CWE-94
4.9
2023-11-29 CVE-2023-44383 Cross-site Scripting vulnerability in Octobercms October
October is a Content Management System (CMS) and web platform to assist with development workflow.
network
low complexity
octobercms CWE-79
5.4
2023-09-28 CVE-2023-43876 Cross-site Scripting vulnerability in Octobercms October 3.4.16
A Cross-Site Scripting (XSS) vulnerability in installation of October v.3.4.16 allows an attacker to execute arbitrary web scripts via a crafted payload injected into the dbhost field.
network
low complexity
octobercms CWE-79
5.4
2023-07-26 CVE-2023-37692 Cross-site Scripting vulnerability in Octobercms October 3.4.4
An arbitrary file upload vulnerability in October CMS v3.4.4 allows attackers to execute arbitrary code via a crafted file.
network
low complexity
octobercms CWE-79
5.4
2022-07-12 CVE-2022-24800 Race Condition vulnerability in Octobercms October
October/System is the system module for October CMS, a self-hosted CMS platform based on the Laravel PHP Framework.
6.8
2022-01-14 CVE-2021-32649 Code Injection vulnerability in Octobercms October
October CMS is a self-hosted content management system (CMS) platform based on the Laravel PHP Framework.
network
low complexity
octobercms CWE-94
6.5
2022-01-14 CVE-2021-32650 Code Injection vulnerability in Octobercms October 1.0.472/1.1.5
October CMS is a self-hosted content management system (CMS) platform based on the Laravel PHP Framework.
network
low complexity
octobercms CWE-94
6.5
2021-10-06 CVE-2021-41126 Improper Authentication vulnerability in Octobercms October
October is a Content Management System (CMS) and web platform built on the the Laravel PHP Framework.
network
low complexity
octobercms CWE-287
6.5
2021-08-26 CVE-2021-29487 Unspecified vulnerability in Octobercms October
octobercms in a CMS platform based on the Laravel PHP Framework.
network
octobercms
5.8