Ecosyste.ms: Advisories
An open API service providing security vulnerability metadata for many open source software ecosystems.
packagist contao/core Security Advisories
Loading...
Critical
Ecosystems: packagist
Packages: contao/core
Source: GitHub Advisory Database
Blast Radius: 25.1
Published: 3 days ago
GSA_kwCzR0hTQS13eHh3LTVncTYtajJnNc4AA8G5
contao/core Insufficient input validation allows for code injection and remote executionEcosystems: packagist
Packages: contao/core
Source: GitHub Advisory Database
Blast Radius: 25.1
Published: 3 days ago
Critical
Ecosystems: packagist
Packages: contao/core, contao/core-bundle, contao/contao
Source: GitHub Advisory Database
Blast Radius: 32.2
Published: about 2 years ago
GSA_kwCzR0hTQS12Y2dnLWhwNHItODdneM4AATl9
Contao Does Not Invalidate Existing Sessions When Password ChangesEcosystems: packagist
Packages: contao/core, contao/core-bundle, contao/contao
Source: GitHub Advisory Database
Blast Radius: 32.2
Published: about 2 years ago
High
Ecosystems: packagist
Packages: contao/core
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 3 days ago
GSA_kwCzR0hTQS13cTQzLThyNXAtdzNtY84AA8G6
contao/core PHP object injection vulnerability allows for arbitrary code executionEcosystems: packagist
Packages: contao/core
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 3 days ago
High
Ecosystems: packagist
Packages: contao/core
Source: GitHub Advisory Database
Blast Radius: 24.2
Published: about 2 years ago
GSA_kwCzR0hTQS05anEyLWp2d2MtcDUyZs1Alg
Contao core SQL Injection VulnerabilityEcosystems: packagist
Packages: contao/core
Source: GitHub Advisory Database
Blast Radius: 24.2
Published: about 2 years ago
High
Ecosystems: packagist
Packages: contao/core, contao/core-bundle, contao/contao
Source: GitHub Advisory Database
Blast Radius: 28.9
Published: about 2 years ago
GSA_kwCzR0hTQS14NWc0LWNyeHEtcXhqeM4AAR8N
Contao Core directory traversal vulnerabilityEcosystems: packagist
Packages: contao/core, contao/core-bundle, contao/contao
Source: GitHub Advisory Database
Blast Radius: 28.9
Published: about 2 years ago
Moderate
Ecosystems: packagist
Packages: contao/core-bundle, contao/core, contao/contao
Source: GitHub Advisory Database
Blast Radius: 20.0
Published: over 2 years ago
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXBqNGotMjg3ai1mNzQy
Cross-site Scripting in ContaoEcosystems: packagist
Packages: contao/core-bundle, contao/core, contao/contao
Source: GitHub Advisory Database
Blast Radius: 20.0
Published: over 2 years ago
Moderate
Ecosystems: packagist
Packages: contao/core
Source: GitHub Advisory Database
Blast Radius: 11.8
Published: about 2 years ago
GSA_kwCzR0hTQS00cjZnLXhoeDctZm0zNs4AAbiN
Contao Core directory traversal vulnerabilityEcosystems: packagist
Packages: contao/core
Source: GitHub Advisory Database
Blast Radius: 11.8
Published: about 2 years ago
Moderate
Ecosystems: packagist, npm
Packages: contao/core, contao-components/mediaelement, mediaelement
Source: GitHub Advisory Database
Blast Radius: 32.3
Published: about 2 years ago
GSA_kwCzR0hTQS0yNzd3LXFweHItMjU0Oc4AAc12
MediaElement Vulnerable to Reflected XSSEcosystems: packagist, npm
Packages: contao/core, contao-components/mediaelement, mediaelement
Source: GitHub Advisory Database
Blast Radius: 32.3
Published: about 2 years ago
Moderate
Ecosystems: packagist
Packages: contao/core
Source: GitHub Advisory Database
Blast Radius: 16.8
Published: 8 months ago
GSA_kwCzR0hTQS1tcGc3LTJyeDktaDVxcM4AA1_V
Contao Cross-site Scripting vulnerabililtyEcosystems: packagist
Packages: contao/core
Source: GitHub Advisory Database
Blast Radius: 16.8
Published: 8 months ago
Statistics
Advisories: 18,774
Packages: 8,381
Repositories: 4
Ecosystems: 12
Packages: 8,381
Repositories: 4
Ecosystems: 12
Filter by Severity
Filter by Ecosystem
Filter by Package
moodle/moodle
323
magento/community-edition
203
pimcore/pimcore
116
dolibarr/dolibarr
107
typo3/cms
102
phpmyadmin/phpmyadmin
92
microweber/microweber
91
drupal/core
90
typo3/cms-core
77
drupal/drupal
75
thorsten/phpmyfaq
70
librenms/librenms
54
symfony/symfony
53
concrete5/concrete5
52
shopware/platform
48
baserproject/basercms
43
intelliants/subrion
40
showdoc/showdoc
40
craftcms/cms
40
nilsteampassnet/teampass
37
froxlor/froxlor
37
shopware/core
36
silverstripe/framework
32
snipe/snipe-it
32
mautic/core
30
getgrav/grav
29
centreon/centreon
27
shopware/shopware
27
prestashop/prestashop
26
magento/core
24
pocketmine/pocketmine-mp
23
remdex/livehelperchat
23
mediawiki/core
23
getkirby/cms
22
grumpydictator/firefly-iii
22
contao/core-bundle
21
tribalsystems/zenario
20
laravel/framework
19
contao/contao
18
forkcms/forkcms
18
cockpit-hq/cockpit
18
simplesamlphp/simplesamlphp
18
topthink/framework
17
cakephp/cakephp
17
symfony/security
17
francoisjacquet/rosariosis
17
ezsystems/ezpublish-kernel
17
genix/cms
17
yetiforce/yetiforce-crm
16
openmage/magento-lts
15
phpmailer/phpmailer
14
zendframework/zendframework1
14
typo3/cms-backend
14
ec-cube/ec-cube
14
symfony/security-http
14
smarty/smarty
14
codeigniter4/framework
13
bolt/bolt
13
elefant/cms
13
lavalite/cms
13
impresscms/impresscms
13
october/system
13
sylius/sylius
12
dompdf/dompdf
12
phpbb/phpbb
12
phpmyfaq/phpmyfaq
12
studio-42/elfinder
12
feehi/feehicms
11
silverstripe/cms
11
zendframework/zendframework
11
feehi/cms
11
ezsystems/ezplatform-kernel
11
opencart/opencart
10
ezsystems/ezpublish-legacy
10
wwbn/avideo
10
pimcore/admin-ui-classic-bundle
10
admidio/admidio
10
pagekit/pagekit
10
nukeviet/nukeviet
10
wallabag/wallabag
10
kevinpapst/kimai2
9
TinyMCE
9
contao/core
9
funadmin/funadmin
9
ssddanbrown/bookstack
9
tinymce/tinymce
9
october/october
9
tinymce
9
concrete5/core
9
alextselegidis/easyappointments
9
yiisoft/yii2
8
october/cms
8
croogo/croogo
8
facturascripts/facturascripts
8
gilacms/gila
8
pimcore/customer-management-framework-bundle
8
sulu/sulu
8
codiad/codiad
8
flarum/core
7
wpglobus/wpglobus
7
ezsystems/ezplatform-admin-ui
7
mantisbt/mantisbt
7
silverstripe/admin
7
silverstripe/graphql
7
october/backend
7
symfony/http-foundation
7
statamic/cms
7
pterodactyl/panel
7
yiisoft/yii2-dev
6
directmailteam/direct-mail
6
yourls/yourls
6
gleez/cms
6
bagisto/bagisto
6
dweeves/magmi
6
guzzlehttp/guzzle
6
in2code/femanager
6
symfony/http-kernel
6
composer/composer
6
nystudio107/craft-seomatic
6
zoujingli/thinkadmin
6
backdrop/backdrop
6
thinkcmf/thinkcmf
5
silverstripe/assets
5
simplesamlphp/saml2
5
cachethq/cachet
5
automad/automad
5
phpxmlrpc/phpxmlrpc
5
neos/flow
5
billz/raspap-webgui
5
typo3/cms-install
5
elgg/elgg
5
phpseclib/phpseclib
5
neos/neos
5
illuminate/database
5
vrana/adminer
5
symfony/security-core
5
anchorcms/anchor-cms
5
codeigniter/framework
5
pear/archive_tar
5
oro/platform
5
bottelet/flarepoint
5
gugoan/economizzer
5
ibexa/core
5
symfony/security-bundle
4
modx/revolution
4
typo3/html-sanitizer
4
ezsystems/ezplatform
4
oro/commerce
4
phpservermon/phpservermon
4
notrinos/notrinos-erp
4
codeigniter4/shield
4
bref/bref
4
wp-premium/gravityforms
4
idno/known
4
wintercms/winter
4
typo3/cms-frontend
4
kimai/kimai
4
woocommerce/woocommerce
4
appwrite/server-ce
4
magento/product-community-edition
4
friendsofsymfony/user-bundle
4
pyrocms/pyrocms
4
bytefury/crater
4
evolutioncms/evolution
4
spatie/browsershot
4
adodb/adodb-php
4
shopware/storefront
4
sylius/resource-bundle
3
symfony/form
3
amphp/http-client
3
uvdesk/community-skeleton
3
enhavo/enhavo-app
3
zendframework/zendservice-amazon
3
pixelfed/pixelfed
3
zendframework/zendservice-api
3
facade/ignition
3
joomla/joomla-cms
3
twig/twig
3
phenx/php-svg-lib
3
shopxo/shopxo
3
doctrine/orm
3
yiisoft/yii
3
joomla/framework
3
quickapps/cms
3
reportico-web/reportico
3
qcubed/qcubed
3
phpoffice/phpspreadsheet
3
rudloff/alltube
3
ckeditor4
3
verbb/comments
3
icecoder/icecoder
3
typo3/cms-form
3
zencart/zencart
3
processwire/processwire
3
froala/wysiwyg-editor
3
buddypress/buddypress
3
illuminate/auth
3
limesurvey/limesurvey
3
bbpress/bbpress
3
zendframework/zendopenid
3