Package impact
Packagist / ezsystems/ezpublish-kernel
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-48366 | unknown | — | — | 3y ago | Timing attack in eZ Platform Ibexa | |||
| CVE-2022-48367 | unknown | — | — | 3y ago | Access control issue in ezsystems/ezpublish-kernel | |||
| CVE-2021-46876 | unknown | — | — | 3y ago | /user/sessions endpoint allows detecting valid accounts | |||
| CVE-2022-48365 | unknown | — | — | 3y ago | Company admin role gives excessive privileges in eZ Platform Ibexa | |||
| CVE-2020-10806 | unknown | — | — | 4y ago | eZ Publish Kernel and Legacy Unrestricted Upload of File with Dangerous Type | |||
| CVE-2022-25337 | unknown | — | — | 4y ago | Code injection in ezsystems/ezpublish-kernel | |||
| CVE-2021-46875 | unknown | — | — | 5y ago | Cross-site scripting in eZ Platform Kernel |