Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.5 CVE-2026-1776 Camaleon CMS versions 2.4.5.0 through 2.9.0, prior to commit f54a77e, contain a path traversal vulnerability in the AWS S3 uploader implementation th… Camaleon Cms after 2.9.0 Fix from $1,6002026-03-10 CRITICAL 9.9 CVE-2024-46986EPSS 37% Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails. An arbitrary file write vulnerability accessible via the upl… Camaleon Cms 2.8.2+ Fix from $2,3002024-09-18 HIGH 7.7 CVE-2024-46987EPSS 15% Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails. A path traversal vulnerability accessible via MediaControlle… Camaleon Cms 2.8.2+ Fix from $1,9502024-09-18 CRITICAL 9.8 CVE-2023-30145EPSS 46% Camaleon CMS v2.7.0 was discovered to contain a Server-Side Template Injection (SSTI) vulnerability via the formats parameter. Camaleon Cms after 2.7.0 Fix from $2,3002023-05-26 HIGH 8.8 CVE-2021-25970 Camaleon CMS 0.1.7 to 2.6.0 doesn’t terminate the active session of the users, even after the admin changes the user’s password. A user that was alre… Camaleon Cms after 2.6.0 Fix from $1,9502021-10-20 MEDIUM 6.1 CVE-2021-25969 In Camaleon CMS application, versions 0.0.1 to 2.6.0 are vulnerable to stored XSS, that allows an unauthenticated attacker to store malicious scripts… Camaleon Cms after 2.6.0 Fix from $1,6002021-10-20 MEDIUM 6.1 CVE-2018-18260 In the 2.4 version of Camaleon CMS, Stored XSS has been discovered. The profile image in the User settings section can be run in the update / upload … Camaleon Cms No fix yet Fix from $1,6002018-10-15