Known Vulnerabilities for products from Html-js
Listed below are 7 of the newest known vulnerabilities associated with the vendor "Html-js".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-48905 json | Not Provided | 2026-05-26 | 2026-05-26 | |
| CVE-2026-48849 json | Not Provided | 2026-05-25 | 2026-05-26 | |
| CVE-2026-48848 json | Not Provided | 2026-05-25 | 2026-05-26 | |
| CVE-2026-48845 json | Not Provided | 2026-05-25 | 2026-05-26 | |
| CVE-2026-48843 json | Not Provided | 2026-05-25 | 2026-05-26 | |
| CVE-2026-48527 json | Not Provided | 2026-05-29 | 2026-05-29 | |
| CVE-2026-48230 json | Not Provided | 2026-05-21 | 2026-05-21 | |
| CVE-2026-48229 json | Not Provided | 2026-05-21 | 2026-05-21 | |
| CVE-2026-48228 json | Not Provided | 2026-05-21 | 2026-05-21 | |
| CVE-2026-48227 json | Not Provided | 2026-05-21 | 2026-05-21 | |
| CVE-2026-3795 json | A security flaw has been discovered in doramart DoraCMS 3.0.x. Impacted is the function createFileBypath of the file /DoraCMS... | Not Provided | 2026-03-09 | 2026-04-29 |
| CVE-2026-3794 json | A vulnerability was identified in doramart DoraCMS 3.0.x. This issue affects some unknown processing of the file /api/v1/mail... | Not Provided | 2026-03-09 | 2026-04-29 |
| CVE-2023-51840 json | 9.8 - CRITICAL | 2024-01-29 | 2024-02-03 | |
| CVE-2022-35147 json | DoraCMS v2.18 and earlier allows attackers to bypass login authentication via a crafted HTTP request. | 9.8 - CRITICAL | 2022-08-17 | 2023-08-08 |
| CVE-2022-25464 json | A stored cross-site scripting (XSS) vulnerability in the component /admin/contenttemp of DoraCMS v2.1.8 allows attackers to e... | 4.8 - MEDIUM | 2022-03-20 | 2022-03-28 |
| CVE-2020-18220 json | Weak Encoding for Password in DoraCMS v2.1.1 and earlier allows attackers to obtain sensitive information as it does not use ... | 7.5 - HIGH | 2021-05-20 | 2021-05-24 |
| CVE-2018-16622 json | Multiple cross-site scripting (XSS) vulnerabilities in /api/content/addOne in DoraCMS v2.0.3 allow remote attackers to inject... | 5.4 - MEDIUM | 2018-09-06 | 2018-11-02 |
Known software with vulnerabilities from Html-js
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Html-js | Doracms | 1.0.4 |