Base plugins, modules, services and API of the Digital Library Framework. It is part of the community-based Kitodo Digitization Suite.
98%
Total Score
95
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2022-24980 kitodo/presentation is vulnerable to Server-Side Request Forgery (SSRF) in versions 0.0.0 - 2.3.2, 3.0.0 - 3.2.3 and 3.3.0 - 3.3.4. | 0.0.0 - 2.3.23.0.0 - 3.2.33.3.0 - 3.3.4 | High |
CVE-2020-16095 kitodo/presentation is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 3.1.2. | 0.0.0 - 3.1.2 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ^12.4|^13.4 | — | — |
symfony/process Version ^7.3 | — | — |
solarium/solarium Version ^6.4 | — | — |
typo3/cms-extbase Version ^12.4|^13.4 | — | — |
typo3/cms-install Version ^12.4|^13.4 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant