Known Vulnerabilities for products from Ss-proj
Listed below are 11 of the newest known vulnerabilities associated with the vendor "Ss-proj".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-41889 json | SHIRASAGI is a Content Management System. Prior to version 1.18.0, SHIRASAGI is vulnerable to a Post-Unicode normalization is... | 5.3 - MEDIUM | 2023-09-15 | 2023-09-20 |
| CVE-2023-39448 json | Path traversal vulnerability in SHIRASAGI prior to v1.18.0 allows a remote authenticated attacker to alter or create arbitra... | 8.8 - HIGH | 2023-09-05 | 2023-09-08 |
| CVE-2023-38569 json | Stored cross-site scripting vulnerability in SHIRASAGI prior to v1.18.0 allows a remote authenticated attacker to execute an ... | 5.4 - MEDIUM | 2023-09-05 | 2023-09-08 |
| CVE-2023-36492 json | Reflected cross-site scripting vulnerability in SHIRASAGI prior to v1.18.0 allows a remote unauthenticated attacker to execut... | 6.1 - MEDIUM | 2023-09-05 | 2023-09-08 |
| CVE-2023-22427 json | Stored cross-site scripting vulnerability in Theme switching function of SHIRASAGI v1.16.2 and earlier versions allows a remo... | 4.8 - MEDIUM | 2023-02-24 | 2023-03-02 |
| CVE-2023-22425 json | Stored cross-site scripting vulnerability in Schedule function of SHIRASAGI v1.16.2 and earlier versions allows a remote auth... | 5.4 - MEDIUM | 2023-02-24 | 2023-03-02 |
| CVE-2022-43499 json | Stored cross-site scripting vulnerability in SHIRASAGI versions prior to v1.16.2 allows a remote authenticated attacker with ... | 5.4 - MEDIUM | 2022-12-05 | 2022-12-06 |
| CVE-2022-43479 json | Open redirect vulnerability in SHIRASAGI v1.14.4 to v1.15.0 allows a remote unauthenticated attacker to redirect users to an ... | 6.1 - MEDIUM | 2022-12-05 | 2022-12-06 |
| CVE-2022-29485 json | Cross-site scripting vulnerability in SHIRASAGI v1.0.0 to v1.14.2, and v1.15.0 allows a remote attacker to inject an arbitrar... | 6.1 - MEDIUM | 2022-06-14 | 2022-06-23 |
| CVE-2020-5607 json | Open redirect vulnerability in SHIRASAGI v1.13.1 and earlier allows remote attackers to redirect users to arbitrary web sites... | 6.1 - MEDIUM | 2020-07-10 | 2020-07-15 |
| CVE-2019-6009 json | Open redirect vulnerability in SHIRASAGI v1.7.0 and earlier allows remote attackers to redirect users to arbitrary web sites ... | 6.1 - MEDIUM | 2019-09-12 | 2019-09-13 |
Known software with vulnerabilities from Ss-proj
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Ss-proj | Shirasagi | 0.1.0 |