Known Vulnerabilities for products from Xibosignage

Listed below are 13 of the newest known vulnerabilities associated with the vendor "Xibosignage".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-31956 json Xibo is an open source digital signage platform with a web content management system and Windows display player software. Pri... Not Provided 2026-04-24 2026-04-27
CVE-2026-31955 json Xibo is an open source digital signage platform with a web content management system and Windows display player software. An ... Not Provided 2026-04-24 2026-04-27
CVE-2026-31953 json Xibo is an open source digital signage platform with a web content management system and Windows display player software. A s... Not Provided 2026-04-24 2026-04-27
CVE-2026-31952 json Xibo is an open source digital signage platform with a web content management system and Windows display player software. Ver... Not Provided 2026-04-24 2026-04-27
CVE-2023-33181 json Xibo is a content management system (CMS). Starting in version 3.0.0 and prior to version 3.3.5, some API routes will print a... 5.3 - MEDIUM 2023-05-30 2023-06-06
CVE-2023-33180 json Xibo is a content management system (CMS). An SQL injection vulnerability was discovered starting in version 3.2.0 and prior ... 6.5 - MEDIUM 2023-05-30 2023-06-06
CVE-2023-33179 json Xibo is a content management system (CMS). An SQL injection vulnerability was discovered starting in version 3.2.0 and prior ... 6.5 - MEDIUM 2023-05-30 2023-06-06
CVE-2023-33178 json Xibo is a content management system (CMS). An SQL injection vulnerability was discovered in the `/dataset/data/{id}` API rout... 6.5 - MEDIUM 2023-05-30 2023-06-06
CVE-2023-33177 json Xibo is a content management system (CMS). A path traversal vulnerability exists in the Xibo CMS whereby a specially crafted ... 8.8 - HIGH 2023-05-30 2023-06-06
CVE-2013-5979 json Directory traversal vulnerability in Spring Signage Xibo 1.2.x before 1.2.3 and 1.4.x before 1.4.2 allows remote attackers to... Not Provided 2013-10-02 2026-04-29
CVE-2013-4889 json Multiple cross-site request forgery (CSRF) vulnerabilities in index.php in Digital Signage Xibo 1.4.2 allow remote attackers ... Not Provided 2014-01-29 2026-04-29
CVE-2013-4888 json Cross-site scripting (XSS) vulnerability in index.php in Digital Signage Xibo 1.4.2 allows remote attackers to inject arbitra... Not Provided 2014-01-29 2026-04-29
CVE-2013-4887 json SQL injection vulnerability in index.php in Digital Signage Xibo 1.4.2 allows remote attackers to execute arbitrary SQL comma... Not Provided 2014-01-29 2026-04-29