Vulnerabilities > Silverstripe

DATE CVE VULNERABILITY TITLE RISK
2024-01-23 CVE-2023-44401 Unspecified vulnerability in Silverstripe Graphql
The Silverstripe CMS GraphQL Server serves Silverstripe data as GraphQL representations.
network
low complexity
silverstripe
5.3
2024-01-23 CVE-2023-48714 Incorrect Permission Assignment for Critical Resource vulnerability in Silverstripe Framework
Silverstripe Framework is the framework that forms the base of the Silverstripe content management system.
network
low complexity
silverstripe CWE-732
4.3
2024-01-23 CVE-2023-49783 Unspecified vulnerability in Silverstripe Admin
Silverstripe Admin provides a basic management interface for the Silverstripe Framework.
network
low complexity
silverstripe
4.3
2023-10-16 CVE-2023-40180 Unspecified vulnerability in Silverstripe Graphql
silverstripe-graphql is a package which serves Silverstripe data in GraphQL representations.
network
low complexity
silverstripe
7.5
2023-04-26 CVE-2023-22729 Unspecified vulnerability in Silverstripe Framework
Silverstripe Framework is the Model-View-Controller framework that powers the Silverstripe content management system.
network
low complexity
silverstripe
6.1
2023-04-26 CVE-2023-22728 Unspecified vulnerability in Silverstripe Framework
Silverstripe Framework is the Model-View-Controller framework that powers the Silverstripe content management system.
network
low complexity
silverstripe
4.3
2023-03-16 CVE-2023-28104 Allocation of Resources Without Limits or Throttling vulnerability in Silverstripe Graphql 4.1.1/4.2.2
`silverstripe/graphql` serves Silverstripe data as GraphQL representations.
network
low complexity
silverstripe CWE-770
7.5
2022-12-21 CVE-2022-42949 Incorrect Permission Assignment for Critical Resource vulnerability in Silverstripe Subsites
Silverstripe silverstripe/subsites through 2.6.0 has Insecure Permissions.
network
low complexity
silverstripe CWE-732
7.5
2022-11-23 CVE-2022-37421 Cross-site Scripting vulnerability in Silverstripe
Silverstripe silverstripe/cms through 4.11.0 allows XSS.
network
low complexity
silverstripe CWE-79
5.4
2022-11-23 CVE-2022-38147 Cross-site Scripting vulnerability in Silverstripe Framework
Silverstripe silverstripe/framework through 4.11 allows XSS (issue 3 of 3).
network
low complexity
silverstripe CWE-79
5.4