Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Squidex HIGH 8.8
CVE-2026-24736

Squidex is an open source headless content management system and content management hub. Versions of the application up to and including 7.21.0 allow…

Fix: after 7.21.0
Fix from $1,950 2026-01-27
Squidex MEDIUM 5.4
CVE-2023-46857

Squidex before 7.9.0 allows XSS via an SVG document to the Upload Assets feature. This occurs because there is an incomplete blacklist in the SVG ins…

Fix: 7.9.0+
Fix from $1,600 2023-12-07
Squidex HIGH 7.2
CVE-2023-46253

Squidex is an open source headless CMS and content management hub. Affected versions are subject to an arbitrary file write vulnerability in the back…

No fix yet
Fix from $1,950 2023-11-07
Squidex MEDIUM 6.1
CVE-2023-46252

Squidex is an open source headless CMS and content management hub. Affected versions are missing origin verification in a postMessage handler which i…

No fix yet
Fix from $1,600 2023-11-07
Squidex MEDIUM 5.4
CVE-2023-46744

Squidex is an open source headless CMS and content management hub. In affected versions a stored Cross-Site Scripting (XSS) vulnerability enables pri…

Fix: after 7.8.2
Fix from $1,600 2023-11-07
Squidex MEDIUM 6.1
CVE-2023-24278

Squidex before 7.4.0 was discovered to contain a squid.svg cross-site scripting (XSS) vulnerability.

Fix: 7.4.0+
Fix from $1,600 2023-03-18
Squidex MEDIUM 6.5
CVE-2023-0642

Cross-Site Request Forgery (CSRF) in GitHub repository squidex/squidex prior to 7.4.0.

Fix: 7.4.0+
Fix from $1,600 2023-02-02
Squidex MEDIUM 6.1
CVE-2023-0643

Improper Handling of Additional Special Element in GitHub repository squidex/squidex prior to 7.4.0.

Fix: 7.4.0+
Fix from $1,600 2023-02-02