Package Health

elefant/cms

The Elefant CMS

Latest 2.4.1-stablePackagistPackagist

93%

Total Score

Dependencies
Dependencies
Evaluates the health and security of package dependencies

80

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Vulnerabilities

TitleVersionsSeverity
CVE-2017-20064
elefant/cms is vulnerable to Improper Control of Generation of Code ('Code Injection') in versions 0.0.0 - 1.3.13.
0.0.0 - 1.3.13
High
CVE-2017-20061
elefant/cms is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 1.3.13.
0.0.0 - 1.3.13
Medium
CVE-2017-20060
elefant/cms is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 1.3.13.
0.0.0 - 1.3.13
Medium
CVE-2017-20062
elefant/cms is vulnerable to Cross-Site Request Forgery (CSRF) in versions 0.0.0 - 1.3.13.
0.0.0 - 1.3.13
High
CVE-2017-20057
elefant/cms is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 1.3.13.
0.0.0 - 1.3.13
Medium

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
pda/pheanstalk
Version ^4.0
google/apiclient
Version ^2.12.1
chillerlan/php-qrcode
Version ^4.3
pragmarx/google2fa-qrcode
Version ^3.0
bshaffer/oauth2-server-php
Version ^1.10

Weekly Downloads

Info

Last Published
1 year ago
Created
4 years ago