Known Vulnerabilities for products from Codeigniter

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Codeigniter".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-39394 json Not Provided 2026-04-08 2026-04-08
CVE-2026-39393 json Not Provided 2026-04-08 2026-04-10
CVE-2026-39392 json Not Provided 2026-04-08 2026-04-08
CVE-2026-39391 json Not Provided 2026-04-08 2026-04-08
CVE-2026-39390 json Not Provided 2026-04-08 2026-04-08
CVE-2026-39389 json Not Provided 2026-04-08 2026-04-10
CVE-2026-39380 json Not Provided 2026-04-07 2026-04-08
CVE-2026-35035 json Not Provided 2026-04-06 2026-04-08
CVE-2026-34989 json Not Provided 2026-04-06 2026-04-07
CVE-2026-34572 json Not Provided 2026-04-01 2026-04-02
CVE-2023-48708 json 6.5 - MEDIUM 2023-11-24 2023-11-30
CVE-2023-48707 json 6.5 - MEDIUM 2023-11-24 2023-11-30
CVE-2023-46240 json CodeIgniter is a PHP full-stack web framework. Prior to CodeIgniter4 version 4.4.3, if an error or exception occurs, a detail... 7.5 - HIGH 2023-10-31 2023-11-08
CVE-2023-32692 json CodeIgniter is a PHP full-stack web framework. This vulnerability allows attackers to execute arbitrary code when you use Val... 9.8 - CRITICAL 2023-05-30 2023-06-06
CVE-2023-27580 json CodeIgniter Shield provides authentication and authorization for the CodeIgniter 4 PHP framework. An improper implementation ... 5.9 - MEDIUM 2023-03-13 2023-03-23
CVE-2022-46170 json CodeIgniter is a PHP full-stack web framework. When an application uses (1) multiple session cookies (e.g., one for user page... 9.8 - CRITICAL 2022-12-22 2023-11-07
CVE-2022-40835 json B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php. 9.8 - CRITICAL 2022-10-07 2022-10-08
CVE-2022-40834 json B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php or_... 9.8 - CRITICAL 2022-10-07 2022-10-08
CVE-2022-40833 json B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php or_... 9.8 - CRITICAL 2022-10-07 2022-10-08
CVE-2022-40832 json B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php hav... 9.8 - CRITICAL 2022-10-07 2022-10-08

Known software with vulnerabilities from Codeigniter

Type Vendor Product Version
ApplicationCodeigniterCodeigniter1.0