Known Vulnerabilities for Doracms by Html-js
Listed below are 7 of the newest known vulnerabilities associated with "Doracms" by "Html-js".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-25870 json | DoraCMS version 3.1 and prior contains a server-side request forgery (SSRF) vulnerability in its UEditor remote image fetch f... | Not Provided | 2026-02-10 | 2026-07-14 |
| CVE-2026-3795 json | Not Provided | 2026-03-09 | 2026-04-29 | |
| CVE-2026-3794 json | Not Provided | 2026-03-09 | 2026-04-29 | |
| CVE-2023-51840 json | 9.8 - CRITICAL | 2024-01-29 | 2024-02-03 | |
| CVE-2022-35147 json | DoraCMS v2.18 and earlier allows attackers to bypass login authentication via a crafted HTTP request. | 9.8 - CRITICAL | 2022-08-17 | 2023-08-08 |
| CVE-2022-25464 json | A stored cross-site scripting (XSS) vulnerability in the component /admin/contenttemp of DoraCMS v2.1.8 allows attackers to e... | 4.8 - MEDIUM | 2022-03-20 | 2022-03-28 |
| CVE-2020-18220 json | Weak Encoding for Password in DoraCMS v2.1.1 and earlier allows attackers to obtain sensitive information as it does not use ... | 7.5 - HIGH | 2021-05-20 | 2021-05-24 |
| CVE-2018-16622 json | Multiple cross-site scripting (XSS) vulnerabilities in /api/content/addOne in DoraCMS v2.0.3 allow remote attackers to inject... | 5.4 - MEDIUM | 2018-09-06 | 2018-11-02 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Html-js | Doracms | 2.1.4 | |||
| Application | Html-js | Doracms | 2.1.3 | |||
| Application | Html-js | Doracms | 2.1.2 | |||
| Application | Html-js | Doracms | 2.1.1 | |||
| Application | Html-js | Doracms | 2.1.0 | |||
| Application | Html-js | Doracms | 2.0.5 | |||
| Application | Html-js | Doracms | 2.0.4 | |||
| Application | Html-js | Doracms | 2.0.3 | |||
| Application | Html-js | Doracms | 2.0.2 | |||
| Application | Html-js | Doracms | 2.0.1 | |||
| Application | Html-js | Doracms | 2.0.0 | |||
| Application | Html-js | Doracms | 1.1.1 | |||
| Application | Html-js | Doracms | 1.1.0 | |||
| Application | Html-js | Doracms | 1.0.9 | |||
| Application | Html-js | Doracms | 1.0.8 | |||
| Application | Html-js | Doracms | 1.0.7 | |||
| Application | Html-js | Doracms | 1.0.6 | |||
| Application | Html-js | Doracms | 1.0.4 |