Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Xibo MEDIUM 5.4
CVE-2026-31953

Xibo is an open source digital signage platform with a web content management system and Windows display player software. A stored Cross-Site Scripti…

Fix: 4.4.1+
Fix from $1,600 2026-04-24
Xibo HIGH 8.1
CVE-2026-31952

Xibo is an open source digital signage platform with a web content management system and Windows display player software. Versions 1.7 through 4.4.0 …

Fix: 4.4.1+
Fix from $1,950 2026-04-24
Xibo HIGH 7.2
CVE-2025-62369

Xibo is an open source digital signage platform with a web content management system (CMS). Versions 4.3.0 and below contain a Remote Code Execution …

Fix: 4.3.1+
Fix from $1,950 2025-11-04
Xibo MEDIUM 5.4
CVE-2024-43412

Xibo is an open source digital signage platform with a web content management system (CMS). Prior to version 4.1.0, a cross-site scripting vulnerabil…

Fix: 4.1.0+
Fix from $1,600 2024-09-03
Xibo HIGH 8.1
CVE-2024-41802

Xibo is a content management system (CMS). An SQL injection vulnerability was discovered in the API routes inside the CMS responsible for Filtering D…

Fix: 3.3.12 / 4.0.14+
Fix from $1,950 2024-07-30
Xibo MEDIUM 6.5
CVE-2024-41804

Xibo is a content management system (CMS). An SQL injection vulnerability was discovered in the API route inside the CMS responsible for Adding/Editi…

Fix: 3.3.12 / 4.0.14+
Fix from $1,600 2024-07-30
Xibo MEDIUM 6.5
CVE-2023-33179

Xibo is a content management system (CMS). An SQL injection vulnerability was discovered starting in version 3.2.0 and prior to version 3.3.5 in the …

Fix: 3.3.5+
Fix from $1,600 2023-05-30
Xibo MEDIUM 6.5
CVE-2023-33180

Xibo is a content management system (CMS). An SQL injection vulnerability was discovered starting in version 3.2.0 and prior to version 3.3.2 in the …

Fix: 3.3.5+
Fix from $1,600 2023-05-30
Xibo MEDIUM 5.3
CVE-2023-33181

Xibo is a content management system (CMS). Starting in version 3.0.0 and prior to version 3.3.5, some API routes will print a stack trace when called…

Fix: 3.3.5+
Fix from $1,600 2023-05-30
Xibo HIGH 8.8
CVE-2023-33177EPSS 7%

Xibo is a content management system (CMS). A path traversal vulnerability exists in the Xibo CMS whereby a specially crafted zip file can be uploaded…

Fix: 2.3.17 / 3.3.5+
Fix from $1,950 2023-05-30
Xibo MEDIUM 6.5
CVE-2023-33178

Xibo is a content management system (CMS). An SQL injection vulnerability was discovered in the `/dataset/data/{id}` API route inside the CMS startin…

Fix: 2.3.17 / 3.3.5+
Fix from $1,600 2023-05-30
Xibo HIGH 7.5
CVE-2013-4887

SQL injection vulnerability in index.php in Digital Signage Xibo 1.4.2 allows remote attackers to execute arbitrary SQL commands via the displayid pa…

No fix yet
Fix from $1,950 2014-01-29
Xibo MEDIUM 6.8
CVE-2013-4889

Multiple cross-site request forgery (CSRF) vulnerabilities in index.php in Digital Signage Xibo 1.4.2 allow remote attackers to hijack the authentica…

No fix yet
Fix from $1,600 2014-01-29
Xibo MEDIUM 5.0
CVE-2013-5979EPSS 18%

Directory traversal vulnerability in Spring Signage Xibo 1.2.x before 1.2.3 and 1.4.x before 1.4.2 allows remote attackers to read arbitrary files vi…

No fix yet
Fix from $1,600 2013-10-02