pkg:Packagist/elmsln/haxcms

4 total CVEsHIGH2MEDIUM2

✅ Check your installed version

All known vulnerabilities

  • HIGH8.5CVE-2025-49137Hax CMS Stored Cross-Site Scripting vulnerability
    from 0, < 11.0.0
  • HIGH8.3CVE-2025-54378HAX CMS API Lacks Authorization Checks
    from 0, < 11.0.14
  • MEDIUM6.5CVE-2025-49138HAX CMS vulnerable to Local File Inclusion via saveOutline API Location Parameter
    from 0, < 11.0.0
  • MEDIUM4.3CVE-2025-54139HAX CMS application pages vulnerable to clickjacking
    from 0, < 11.0.8