@umbraco-cms/backoffice
This package contains the types for the Umbraco Backoffice.
Moderate Security Advisories for @umbraco-cms/backoffice in npm Clear Filters
Potential
Moderate
about 1 year ago
Umbraco Delivery API allows for cached requests to be returned with an invalid API key
nuget
Umbraco.Cms.Api.Delivery
Potential
Moderate
about 1 year ago
Umbraco CMS disclosure of configured password requirements
nuget
Umbraco.Cms
Potential
Moderate
about 1 year ago
Umbraco Vulnerable to By-Pass of Configured Allowed Extensions for File Uploads
nuget
Umbraco.Cms
Potential
Moderate
over 1 year ago
Umbraco Makes User Enumeration Feasible Based on Timing of Login Response
nuget
Umbraco.Cms
Potential
Moderate
over 1 year ago
Umbraco Allows a Restricted Editor User to Delete Media Item or Access Unauthorized Content
nuget
Umbraco.Cms.Web.Backoffice
Potential
Moderate
over 1 year ago
Umbraco Allows Improper API Access Control to Low-Privilege Users to Data Type Functionality
nuget
Umbraco.Cms.Api.Management
Potential
Moderate
over 1 year ago
XSS/HTML Injection Vulnerability in Umbraco Preview Badge
nuget
Umbraco.Cms
Potential
Moderate
over 1 year ago
Umbraco Allows User Enumeration Feasible Based On Management API Timing and Response Codes
nuget
Umbraco.Cms
Moderate
over 1 year ago
XSS/HTML Injection Vulnerability in Umbraco Backoffice Components
npm, nuget
@umbraco-cms/backoffice, Umbraco.Cms.StaticAssets
Potential
Moderate
almost 2 years ago
Umbraco CMS Has Incomplete Server Termination During Explicit Sign-Out
nuget
Umbraco.CMS
Potential
Moderate
almost 2 years ago
Umbraco has a Potential Code Execution Risk When Viewing SVG Files in Full Screen in Backoffice
nuget
Umbraco.Cms, UmbracoCms
Potential
Moderate
almost 2 years ago
Umbraco CMS logout page displayed before session expiration
nuget
UmbracoCMS, Umbraco.CMS
Moderate
almost 2 years ago
Umbraco CMS vulnerable to stored Cross-site Scripting in the "dictionary name" on Dictionary section
npm, nuget
@umbraco-cms/backoffice, Umbraco.Cms.StaticAssets
Potential
Potential
Moderate
about 2 years ago
Umbraco CMS vulnerable to Generation of Error Message Containing Sensitive Information
nuget
Umbraco.Cms.Api.Management
Potential
Moderate
over 2 years ago
Umbraco CMS Vulnerable to Stored XSS on Content Page Through Markdown Editor Preview Pane
nuget
UmbracoCms.Core
Potential
Moderate
over 2 years ago
Umbraco CMS Open Redirect Bypass Protection
nuget
Umbraco.Cms.Web.BackOffice, UmbracoCms.Core
Potential
Moderate
over 2 years ago
Blind SSRF Leads to Port Scan by using Webhooks
nuget
Umbraco.Cms.Web.BackOffice, Umbraco.Cms.Core
Potential
Potential
Potential
Potential
Potential