Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Kirby
(Getkirby)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 23 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2018-12-28 | CVE-2018-16630 | Kirby v2.5.12 allows XSS by using the "site files" Add option to upload an SVG file. | Kirby | 4.8 | ||
2018-12-04 | CVE-2018-16628 | panel/login in Kirby v2.5.12 allows XSS via a blog name. | Kirby | 5.4 | ||
2018-12-20 | CVE-2018-16627 | panel/login in Kirby v2.5.12 allows Host header injection via the "forget password" feature. | Kirby | 6.1 |