silverstripe Summary
Latest vulnerabilities published by silverstripe
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Access Control Flaw in Silverstripe Framework Assets Module
CVE-2026-24749SilverstripeSilverstripe-assets5.3MEDIUMJavaScript Injection Vulnerability in Silverstripe CMS by Silverstripe
CVE-2025-30148SilverstripeSilverstripe-framework5.4MEDIUMXSS Vulnerability in Silverstripe Elemental Page Type
CVE-2025-25197SilverstripeSilverstripe-elemental5.4MEDIUMHTML Injection Vulnerability in SilverStripe Asset Gallery
CVE-2024-47605SilverstripeSilverstripe-asset-admin5.4MEDIUMCross-Site Scripting Vulnerability in Silverstripe Framework by Silverstripe
CVE-2024-53277SilverstripeSilverstripe-framework5.4MEDIUMServer-Side Sanitization Fix Released for Silverstripe CMS to Address XSS Vulnerability
CVE-2024-32981SilverstripeSilverstripe-framework5.4MEDIUMSilverstripe Reports API Vulnerability - Direct URL Access Could Allow Unauthorized Access
CVE-2024-29885SilverstripeSilverstripe-reports4.3MEDIUMNo permission checks for editing/deleting records with CSV import form
CVE-2023-49783SilverstripeSilverstripe-admin4.3MEDIUMRecord titles for restricted records can be viewed if exposed by GridFieldAddExistingAutocompleter
CVE-2023-48714SilverstripeSilverstripe-framework4.3MEDIUMSilverstripe GraqhQL's view permissions are bypassed for paginated lists of ORM data
CVE-2023-44401SilverstripeSilverstripe-graphql5.3MEDIUMDenial of service vulnerability in silverstripe-graphql via recursive queries
CVE-2023-40180SilverstripeSilverstripe-graphql7.5HIGHSilverstripe Framework has open redirect vulnerability on CMSSecurity relogin screen
CVE-2023-22729SilverstripeSilverstripe-framework5.4MEDIUMSilverstripe Framework has missing permission check of canView in GridFieldPrintButton
CVE-2023-22728SilverstripeSilverstripe-framework4.3MEDIUMsilverstripe/graphql Denial of Service vulnerability
CVE-2023-28104SilverstripeSilverstripe-graphql7.5HIGHInsecure Permissions in Silverstripe Subsites by Silverstripe
CVE-2022-42949SilverstripeSubsites7.5HIGHCross-Site Scripting in SilverStripe Framework, Assets, and Asset Admin
CVE-2022-38724SilverstripeAsset Admin5.4MEDIUMCross-Site Scripting Vulnerability in Silverstripe CMS by Silverstripe
CVE-2022-37421SilverstripeSilverstripe5.4MEDIUMXSS Vulnerability in Silverstripe Framework by Silverstripe
CVE-2022-37429SilverstripeFramework5.4MEDIUMCross-Site Scripting Vulnerability in Silverstripe Framework
CVE-2022-37430SilverstripeFramework5.4MEDIUMCross-Site Scripting Vulnerability in SilverStripe Framework by SilverStripe
CVE-2022-38145SilverstripeFramework5.4MEDIUMCross-Site Scripting Vulnerability in Silverstripe Framework
CVE-2022-38147SilverstripeFramework5.4MEDIUMCross-Site Scripting Vulnerability in Silverstripe Framework by Silverstripe
CVE-2022-38462SilverstripeFramework6.1MEDIUMCross-Site Scripting Vulnerability in Silverstripe Framework by Silverstripe
CVE-2022-38146SilverstripeFramework5.4MEDIUMSQL Injection Vulnerability in SilverStripe Framework Affects Multiple Versions
CVE-2022-38148SilverstripeFramework8.8HIGHStored XSS Vulnerability in SilverStripe Framework
CVE-2022-28803SilverstripeSilverstripe5.4MEDIUM