Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
EN
中
Loading…
Packagist/ezsystems/ezpublish-kernel — 7 CVEs · VulnScope
pkg:Packagist/
ezsystems/ezpublish-kernel
7 total CVEs
CRITICAL
3
HIGH
2
MEDIUM
2
LOW
2
✅ Check your installed version
Check
All known vulnerabilities
CRITICAL
9.8
CVE-2022-48367
Access control issue in ezsystems/ezpublish-kernel
>= 7.5.0, < 7.5.28
CRITICAL
9.8
CVE-2020-10806
eZ Publish Kernel and Legacy Unrestricted Upload of File with Dangerous Type
from 0, < 5.4.14.1
CRITICAL
9.8
CVE-2022-25337
Code injection in ezsystems/ezpublish-kernel
>= 7.5.0, < 7.5.26
HIGH
7.2
Company admin role gives excessive privileges in eZ Platform Ibexa
>= 7.5.0, < 7.5.30
HIGH
7.2
Company admin role gives excessive privileges in eZ Platform Ibexa
>= 7.5.0, < 7.5.30
MEDIUM
5.3
/user/sessions endpoint allows detecting valid accounts
>= 6.13.0, < 6.13.8.1
MEDIUM
5.3
/user/sessions endpoint allows detecting valid accounts
>= 6.13.0, < 6.13.8.1
LOW
3.7
Login timing attack in ezsystems/ezpublish-kernel
>= 7.5.0, < 7.5.29
LOW
3.7
Login timing attack in ezsystems/ezpublish-kernel
>= 7.5.0, < 7.5.29
—
Cross-site scripting in eZ Platform Kernel
from 0, < 6.13.8.2
CVE-2022-48365
CVE-2022-48365
CVE-2021-46876
CVE-2021-46876
CVE-2022-48366
CVE-2022-48366
CVE-2021-46875