wanglelecc/laracms
The LaraCMS management system.
Activity
- Latest release
- 6y ago
- Total releases
- 4
- Cadence
- ~4 months
- Last 12 months
- 0
Reach
- Stars
- —
Details
- License
- MIT
- First release
- Dec 26, 2018
| Version | Released | |
|---|---|---|
v1.0.3
patch
1 CVE
CVE-2020-20129
GHSA-m72g-42q6-gvc2
Oct 04, 2021
Cross-site Scripting in LaraCMS
5.4
/ 10
Medium
Network
Low
Low
Required
Changed
Low
Low
None
LaraCMS contains a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the content editor. Affected versions
v1.0.0
v1.0.1
v1.0.2
v1.0.3
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v1.0.2
patch
1 CVE
CVE-2020-20129
GHSA-m72g-42q6-gvc2
Oct 04, 2021
Cross-site Scripting in LaraCMS
5.4
/ 10
Medium
Network
Low
Low
Required
Changed
Low
Low
None
LaraCMS contains a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the content editor. Affected versions
v1.0.0
v1.0.1
v1.0.2
v1.0.3
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v1.0.1
patch
1 CVE
CVE-2020-20129
GHSA-m72g-42q6-gvc2
Oct 04, 2021
Cross-site Scripting in LaraCMS
5.4
/ 10
Medium
Network
Low
Low
Required
Changed
Low
Low
None
LaraCMS contains a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the content editor. Affected versions
v1.0.0
v1.0.1
v1.0.2
v1.0.3
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v1.0.0
initial
1 CVE
CVE-2020-20129
GHSA-m72g-42q6-gvc2
Oct 04, 2021
Cross-site Scripting in LaraCMS
5.4
/ 10
Medium
Network
Low
Low
Required
Changed
Low
Low
None
LaraCMS contains a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the content editor. Affected versions
v1.0.0
v1.0.1
v1.0.2
v1.0.3
References Updated Nov 08, 2023 · Source: OSV.dev |