Known Vulnerabilities for products from Codeigniter

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Codeigniter".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-41891 json Not Provided 2026-05-07 2026-05-07
CVE-2026-41890 json Not Provided 2026-05-07 2026-05-07
CVE-2026-41587 json Not Provided 2026-05-07 2026-05-07
CVE-2026-41203 json Not Provided 2026-05-07 2026-05-07
CVE-2026-41202 json Not Provided 2026-05-07 2026-05-07
CVE-2026-41201 json Not Provided 2026-05-07 2026-05-07
CVE-2026-39394 json Not Provided 2026-04-08 2026-04-08
CVE-2026-39393 json Not Provided 2026-04-08 2026-04-10
CVE-2026-39392 json Not Provided 2026-04-08 2026-04-08
CVE-2026-39391 json Not Provided 2026-04-08 2026-04-08
CVE-2023-48708 json 6.5 - MEDIUM 2023-11-24 2023-11-30
CVE-2023-48707 json 6.5 - MEDIUM 2023-11-24 2023-11-30
CVE-2023-46240 json CodeIgniter is a PHP full-stack web framework. Prior to CodeIgniter4 version 4.4.3, if an error or exception occurs, a detail... 7.5 - HIGH 2023-10-31 2023-11-08
CVE-2023-32692 json CodeIgniter is a PHP full-stack web framework. This vulnerability allows attackers to execute arbitrary code when you use Val... 9.8 - CRITICAL 2023-05-30 2023-06-06
CVE-2023-27580 json CodeIgniter Shield provides authentication and authorization for the CodeIgniter 4 PHP framework. An improper implementation ... 5.9 - MEDIUM 2023-03-13 2023-03-23
CVE-2022-46170 json CodeIgniter is a PHP full-stack web framework. When an application uses (1) multiple session cookies (e.g., one for user page... 9.8 - CRITICAL 2022-12-22 2023-11-07
CVE-2022-40835 json B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php. 9.8 - CRITICAL 2022-10-07 2022-10-08
CVE-2022-40834 json B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php or_... 9.8 - CRITICAL 2022-10-07 2022-10-08
CVE-2022-40833 json B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php or_... 9.8 - CRITICAL 2022-10-07 2022-10-08
CVE-2022-40832 json B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php hav... 9.8 - CRITICAL 2022-10-07 2022-10-08

Known software with vulnerabilities from Codeigniter

Type Vendor Product Version
ApplicationCodeigniterCodeigniter1.0