pkg:npm/@haxtheweb/haxcms-nodejs
共 16 筆 CVEHIGH5MEDIUM3
✅ 檢查你的版本
所有已知漏洞
- from 0, < 26.0.1
- from 0, < 11.0.3
- from 0, < 11.0.14
- >= 11.0.6, < 25.0.0
- from 0, < 11.0.10
- from 0, < 26.0.0
- from 0, < 11.0.0
- from 0, < 11.0.13
- from 0, < 26.0.0
- —CVE-2026-46396Stored XSS via <iframe> in HAX CMS allows access to sensitive client-side data and account takeoverfrom 0, < 26.0.0
- from 0, < 26.0.0
- —CVE-2026-46496HAX CMS: Stored XSS via '<video-player>' component allows arbitrary JavaScript execution and token theftfrom 0, < 26.0.0
- from 0, < 26.0.0
- —CVE-2025-54134HAX CMS NodeJS Application Has Improper Error Handling That Leads to Denial of Servicefrom 0, < 11.0.9
- —CVE-2025-54128NodeJS version of HAX CMS Has Disabled Content Security Policy That Enables Cross-Site Scriptingfrom 0, < 11.0.8
- —CVE-2025-54127NodeJS version of HAX CMS Has Insecure Default Configuration That Leads to Unauthenticated Accessfrom 0, < 11.0.7