Anchor is a free, lightweight, faster-than-a-bullet, simple blogging system, made for art–directed posts.
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2024-29338 anchorcms/anchor-cms is vulnerable to Cross-Site Request Forgery (CSRF) in versions 0.0.0 - 0.12.7. | 0.0.0 - 0.12.7 | High |
CVE-2024-29499 anchorcms/anchor-cms is vulnerable to Cross-Site Request Forgery (CSRF) in versions 0.0.0 - 0.12.7. | 0.0.0 - 0.12.7 | High |
CVE-2018-7251 anchorcms/anchor-cms is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor in versions 0.0.0 - 0.12.7. | 0.0.0 - 0.12.7 | Critical |
CVE-2022-25576 anchorcms/anchor-cms is vulnerable to Cross-Site Request Forgery (CSRF) in versions 0.0.0 - 0.12.7. | 0.0.0 - 0.12.7 | Medium |
CVE-2021-44116 anchorcms/anchor-cms is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 0.12.7. | 0.0.0 - 0.12.7 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
ircmaxell/random-lib Version ^1.1 | — | — |
indigophp/hash-compat Version ^1.1 | — | — |
ircmaxell/password-compat Version ^1.0 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant