Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.4 CVE-2025-71164 Typesetter CMS versions up to and including 5.1 contain a reflected cross-site scripting (XSS) vulnerability in the Editing component. The images par… Typesetter after 5.1 Fix from $1,6002026-01-14 MEDIUM 5.4 CVE-2025-71165 Typesetter CMS versions up to and including 5.1 contain a reflected cross-site scripting (XSS) vulnerability in the administrative interface within t… Typesetter after 5.1 Fix from $1,6002026-01-14 MEDIUM 5.4 CVE-2025-71166 Typesetter CMS versions up to and including 5.1 contain a reflected cross-site scripting (XSS) vulnerability in the administrative interface within t… Typesetter after 5.1 Fix from $1,6002026-01-14 HIGH 8.8 CVE-2022-25523 TypesetterCMS v5.1 was discovered to contain a Cross-Site Request Forgery (CSRF) which is exploited via a crafted POST request. Typesetter Mitigation only Fix from $1,9502022-03-25 MEDIUM 6.1 CVE-2020-19511 Cross Site Scriptiong vulnerability in Typesetter 5.1 via the !1) className and !2) Description fields in index.php/Admin/Classes, Typesetter No fix yet Fix from $1,6002021-06-21 HIGH 7.2 CVE-2020-25790EPSS 16% Typesetter CMS 5.x through 5.1 allows admins to upload and execute arbitrary PHP code via a .php file inside a ZIP archive. NOTE: the vendor disputes… Typesetter after 5.1 Fix from $1,9502020-09-19 MEDIUM 5.4 CVE-2018-16639 Typesetter 5.1 allows XSS via the index.php/Admin LABEL parameter during new page creation. Typesetter No fix yet Fix from $1,6002019-05-13 HIGH 8.8 CVE-2018-6889EPSS 7% An issue was discovered in Typesetter 5.1. It suffers from a Host header injection vulnerability, Using this attack, a malicious user can poison the … Typesetter No fix yet Fix from $1,9502018-02-12 HIGH 8.0 CVE-2018-6888 An issue was discovered in Typesetter 5.1. The User Permissions page (aka Admin/Users) suffers from critical flaw of Cross Site Request forgery: usin… Typesetter No fix yet Fix from $1,9502018-02-12