pkg:Maven/org.opencms:opencms-core
31 total CVEsHIGH3MEDIUM13
✅ Check your installed version
All known vulnerabilities
- from 0, < 11.0.0
- HIGH7.5CVE-2023-42346Alkacon OpenCms is vulnerable to XXE when the <!DOCTYPE> refers to an external hostfrom 0, < 16.0
- HIGH7.3CVE-2023-42344Alkacon OpenCms allows remote unauthenticated attackers to obtain sensitive informationfrom 0, < 10.5.1
- >= 11.0.0, < 12.0.0
- >= 16.0, < 17.0
- from 0, < 16.0
- from 0, < 16.0
- from 0, <= 15.0
- from 0, < 11.0.1
- from 0, < 11.0.1
- from 0, < 11.0.1
- from 0, <= 17.0
- from 0, <= 17.0
- >= 14.0.0, < 16.0.0
- from 0, < 11.0.1
- MEDIUM4.3CVE-2019-13237Local file inclusion allows unauthorized access to internal resources in Alkacon OpenCmsfrom 0, < 11.0.1
- from 0, <= 17.0
- from 0, < 11.0.0
- from 0, < 8.5.2
- from 0, < 9.5.2
- —CVE-2008-1753Alkacon OpenCMS XSS via searchfilter parameter in system/workplace/admin/workplace/sessions.jspfrom 0, < 7.0.4
- from 0, < 7.0.4
- >= 7.0.3, < 7.0.5
- >= 7.0.3, < 7.0.5
- —CVE-2008-1045Alkacon OpenCMS XSS via file tree navigation in system/workplace/views/explorer/tree_files.jspfrom 0, < 7.0.4
- —CVE-2006-3935Alkacon OpenCMS Improper Access Control via system/workplace/views/admin/admin-main.jspfrom 0, < 6.2.2
- from 0, < 6.2.2
- from 0, < 6.2.2
- from 0, < 6.2.2
- >= 6.0.0, < 6.0.4
- from 0, < 6.0.3