Known Vulnerabilities for products from Html-js

Listed below are 7 of the newest known vulnerabilities associated with the vendor "Html-js".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-48905 json Not Provided 2026-05-26 2026-05-26
CVE-2026-48849 json Not Provided 2026-05-25 2026-05-26
CVE-2026-48848 json Not Provided 2026-05-25 2026-05-26
CVE-2026-48845 json Not Provided 2026-05-25 2026-05-26
CVE-2026-48843 json Not Provided 2026-05-25 2026-05-26
CVE-2026-48527 json Not Provided 2026-05-29 2026-05-29
CVE-2026-48230 json Not Provided 2026-05-21 2026-05-21
CVE-2026-48229 json Not Provided 2026-05-21 2026-05-21
CVE-2026-48228 json Not Provided 2026-05-21 2026-05-21
CVE-2026-48227 json Not Provided 2026-05-21 2026-05-21
CVE-2026-3795 json A security flaw has been discovered in doramart DoraCMS 3.0.x. Impacted is the function createFileBypath of the file /DoraCMS... Not Provided 2026-03-09 2026-04-29
CVE-2026-3794 json A vulnerability was identified in doramart DoraCMS 3.0.x. This issue affects some unknown processing of the file /api/v1/mail... Not Provided 2026-03-09 2026-04-29
CVE-2023-51840 json 9.8 - CRITICAL 2024-01-29 2024-02-03
CVE-2022-35147 json DoraCMS v2.18 and earlier allows attackers to bypass login authentication via a crafted HTTP request. 9.8 - CRITICAL 2022-08-17 2023-08-08
CVE-2022-25464 json A stored cross-site scripting (XSS) vulnerability in the component /admin/contenttemp of DoraCMS v2.1.8 allows attackers to e... 4.8 - MEDIUM 2022-03-20 2022-03-28
CVE-2020-18220 json Weak Encoding for Password in DoraCMS v2.1.1 and earlier allows attackers to obtain sensitive information as it does not use ... 7.5 - HIGH 2021-05-20 2021-05-24
CVE-2018-16622 json Multiple cross-site scripting (XSS) vulnerabilities in /api/content/addOne in DoraCMS v2.0.3 allow remote attackers to inject... 5.4 - MEDIUM 2018-09-06 2018-11-02

Known software with vulnerabilities from Html-js

Type Vendor Product Version
ApplicationHtml-jsDoracms1.0.4