Known Vulnerabilities for products from Chaos Tool Suite Project
Listed below are 11 of the newest known vulnerabilities associated with the vendor "Chaos Tool Suite Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2015-7875 json | ctools 6.x-1.x before 6.x-1.14 and 7.x-1.x before 7.x-1.8 in Drupal does not verify the "edit" permission for the "content ty... | Not Provided | 2017-08-07 | 2025-04-20 |
| CVE-2015-6665 json | Cross-site scripting (XSS) vulnerability in the Ajax handler in Drupal 7.x before 7.39 and the Ctools module 6.x-1.x before 6... | Not Provided | 2015-08-24 | 2026-05-06 |
| CVE-2015-4398 json | Open redirect vulnerability in the Chaos tool suite (ctools) module before 6.x-1.12 and 7.x-1.x before 7.x-1.7 for Drupal all... | Not Provided | 2015-06-16 | 2026-05-06 |
| CVE-2015-4375 json | The Chaos tool suite (ctools) module 7.x-1.x before 7.x-1.7 for Drupal allows remote attackers to obtain sensitive node title... | Not Provided | 2015-06-15 | 2026-05-06 |
| CVE-2013-1925 json | The Chaos Tool Suite (ctools) module 7.x-1.x before 7.x-1.3 for Drupal does not properly restrict node access, which allows r... | Not Provided | 2013-07-16 | 2026-04-29 |
| CVE-2012-5559 json | Cross-site scripting (XSS) vulnerability in the page manager node view task in the Chaos tool suite (ctools) module 6.x-1.x b... | Not Provided | 2012-12-03 | 2026-04-29 |
| CVE-2012-2082 json | Cross-site scripting (XSS) vulnerability in the Chaos tool suite (aka CTools) module 7.x-1.x before 7.x-1.0 for Drupal allows... | Not Provided | 2012-08-14 | 2026-04-29 |
| CVE-2010-2010 json | Multiple cross-site scripting (XSS) vulnerabilities in the Chaos Tool Suite (aka CTools) module 6.x before 6.x-1.4 for Drupal... | Not Provided | 2010-05-21 | 2026-04-29 |
| CVE-2010-1548 json | The auto-complete functionality in the Chaos Tool Suite (aka CTools) module 6.x before 6.x-1.4 for Drupal does not follow acc... | Not Provided | 2010-05-21 | 2026-04-29 |
| CVE-2010-1547 json | Multiple cross-site request forgery (CSRF) vulnerabilities in the Chaos Tool Suite (aka CTools) module 6.x before 6.x-1.4 for... | Not Provided | 2010-05-21 | 2026-04-29 |
| CVE-2010-1546 json | Multiple eval injection vulnerabilities in the import functionality in the Chaos Tool Suite (aka CTools) module 6.x before 6.... | Not Provided | 2010-05-21 | 2026-04-29 |
Known software with vulnerabilities from Chaos Tool Suite Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Chaos Tool Suite Project | Ctools | 6.x-1.0 |