Known Vulnerabilities for products from Pyrocms
Listed below are 5 of the newest known vulnerabilities associated with the vendor "Pyrocms".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-29689 json | PyroCMS 3.9 contains a remote code execution (RCE) vulnerability that can be exploited through a server-side template injecti... | 9.8 - CRITICAL | 2023-08-04 | 2023-08-09 |
| CVE-2022-37721 json | PyroCMS 3.9 is vulnerable to a stored Cross Site Scripting (XSS_ when a low privileged user such as an author, injects a craf... | Not Provided | 2022-11-25 | 2026-07-09 |
| CVE-2022-35118 json | PyroCMS v3.9 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities. | Not Provided | 2022-08-01 | 2026-07-09 |
| CVE-2020-25263 json | PyroCMS 3.7 is vulnerable to cross-site request forgery (CSRF) via the admin/addons/uninstall/anomaly.module.blocks URI: an a... | 7.1 - HIGH | 2020-10-08 | 2020-10-19 |
| CVE-2020-25262 json | PyroCMS 3.7 is vulnerable to cross-site request forgery (CSRF) via the admin/pages/delete/ URI: pages will be deleted. | 4.3 - MEDIUM | 2020-10-08 | 2020-10-16 |
Known software with vulnerabilities from Pyrocms
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Pyrocms | Pyrocms | 0.9 |