getkirby Kirby Vulnerabilities
Getkirby Kirby vulnerabilities.
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Arbitrary Content Modification in Kirby CMS by GetKirby
CVE-2025-65012GetkirbyKirby5.1MEDIUMPath Traversal Vulnerability in Kirby Content Management System
CVE-2025-31493GetkirbyKirby6.3MEDIUMPath Traversal Vulnerability in Kirby CMS Affects Local Development Setups
CVE-2025-30207GetkirbyKirby2.3LOWPath Traversal Vulnerability in Kirby Content Management System
CVE-2025-30159GetkirbyKirby6.3MEDIUMInsufficient Permission Checks in Kirby CMS Allow Language Manipulation
CVE-2024-41964GetkirbyKirby8.1HIGHKirby Link Field Vulnerability Could Lead to Arbitrary JavaScript Execution
CVE-2024-27087GetkirbyKirby5.4MEDIUMKirby vulnerable to Cross-site scripting (XSS) from MIME type auto-detection of uploaded files
CVE-2023-38491GetkirbyKirby5.7MEDIUMKirby vulnerable to denial of service from unlimited password lengths
CVE-2023-38492GetkirbyKirby5.3MEDIUMKirby vulnerable to field injection in the KirbyData text storage handler
CVE-2023-38488GetkirbyKirby7.1HIGHKirby vulnerable to Insufficient Session Expiration after a password change
CVE-2023-38489getkirbykirby7.3HIGHKirby XML External Entity (XXE) vulnerability in the XML data handler
CVE-2023-38490GetkirbyKirbyπΎπ‘6.8MEDIUMKirby CMS vulnerable to user enumeration in the brute force protection
CVE-2022-39315GetkirbyKirby6.5MEDIUMUser enumeration in the code-based login and password reset forms
CVE-2022-39314GetkirbyKirby4.8MEDIUMCross-site scripting (XSS) from dynamic options in the multiselect field in Kirby
CVE-2022-36037GetkirbyKirby5.9MEDIUMCSRF Vulnerability in Kirby CMS by Kirby, Inc.
CVE-2018-14519GetkirbyKirby4.3MEDIUMCross-Site Request Forgery Vulnerability in Kirby CMS
CVE-2018-14520GetkirbyKirbyπΎπ‘5.4MEDIUMCross-site scripting (XSS) from image block content in the site frontend
CVE-2021-41258GetkirbyKirby7.3HIGHCross-site scripting (XSS) from writer field content in the site frontend
CVE-2021-41252GetkirbyKirby7.3HIGHCross-site scripting (XSS) from field and configuration text displayed in the Panel
CVE-2021-32735GetkirbyKirby7.1HIGHCross-site scripting (XSS) from unsanitized uploaded SVG files
CVE-2021-29460GetkirbyKirby7.6HIGHPHP Phar archives could be uploaded and executed in Kirby
CVE-2020-26255GetkirbyKirby6.8MEDIUM.dev domains treated as local in Kirby
CVE-2020-26253GetkirbyKirby6.8MEDIUMPersistent XSS Vulnerability in Kirby Content Management System
CVE-2018-16623GetkirbyKirby4.8MEDIUMCross-Site Scripting Vulnerability in Kirby CMS by Get Kirby
CVE-2018-16624GetkirbyKirby5.4MEDIUMCross-Site Scripting Vulnerability in Kirby by Get Kirby
CVE-2018-16630GetkirbyKirby4.8MEDIUM
