feehi/cms Security Advisories for 2.1.0-beta2 (8)
-
[MEDIUM] FeehiCMS User[avatar] unrestricted upload
PKSA-8cd8-f42g-99sp CVE-2024-8296 GHSA-xp68-7g33-f49m
Affected version: <=2.1.1
Reported by:
GitHub -
[MEDIUM] FeehiCMS file upload vulnerability
PKSA-5kzz-4k72-td3k CVE-2024-8294 GHSA-xxqw-83c7-r24r
Affected version: <=2.1.1
Reported by:
GitHub -
[MEDIUM] FeehiCMS BannerForm[img] unrestricted upload
PKSA-y4fh-hd65-gg88 CVE-2024-8295 GHSA-3wrg-6mg5-jg2v
Affected version: <=2.1.1
Reported by:
GitHub -
[MEDIUM] FeehiCMS is vulnerable to Cross-Site Scripting (XSS)
PKSA-7d83-1f15-m9mg CVE-2022-43320 GHSA-3ppm-fwhm-qqg6
Affected version: <=2.1.1
Reported by:
GitHub -
[MEDIUM] Feehi CMS host header injection vulnerability
PKSA-93nk-r66k-k8jd CVE-2022-38796 GHSA-4r4f-jrvw-h727
Affected version: <=2.1.1
Reported by:
GitHub -
[MEDIUM] Feehi CMS Cross-site Scripting
PKSA-r9q6-4fq5-fvhw CVE-2022-34140 GHSA-25q6-m425-9fqr
Affected version: <=2.1.1
Reported by:
GitHub -
[HIGH] Feehi CMS arbitrary code execution via crafted PHP file
PKSA-2ysr-5yvs-pzx5 CVE-2022-34971 GHSA-jxg9-2ch7-f552
Affected version: <=2.1.1
Reported by:
GitHub -
[CRITICAL] Server-Side Request Forgery in Feehi CMS
PKSA-kbwh-x95v-hfh5 CVE-2021-30108 GHSA-gc45-j3m5-8qfq
Affected version: <=2.1.1
Reported by:
GitHub