Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
EN
中
Loading…
Packagist/winter/wn-backend-module — 3 CVEs · VulnScope
pkg:Packagist/
winter/wn-backend-module
3 total CVEs
CRITICAL
1
LOW
2
✅ Check your installed version
Check
All known vulnerabilities
CRITICAL
9.9
CVE-2026-27591
Winter vulnerable to privilege escalation by authenticated backend users
>= 1.2.0, < 1.2.12
LOW
3.3
CVE-2023-52085
Winter CMS Local File Inclusion through Server Side Template Injection
from 0, < 1.2.4
LOW
2.0
CVE-2023-52084
Winter CMS Stored XSS through Backend ColorPicker FormWidget
from 0, < 1.2.4