Lavalite - The Laravel CMS.
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2025-71177 lavalite/cms is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 10.1.0. | 0.0.0 - 10.1.0 | Medium |
CVE-2024-31828 lavalite/cms is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 10.1.0 - 10.1.0. | 10.1.0 - 10.1.0 | Medium |
CVE-2023-30124 lavalite/cms is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 9.0.0. | 0.0.0 - 9.0.0 | Medium |
CVE-2023-27237 lavalite/cms is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 9.0.0. | 0.0.0 - 9.0.0 | Medium |
CVE-2023-27238 lavalite/cms is vulnerable to Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') in versions 0.0.0 - 9.0.0. | 0.0.0 - 9.0.0 | Critical |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laravel/ui Version ^4.2 | — | — |
litecms/page Version ^10.1 | — | — |
litecms/block Version ^10.1 | — | — |
laravel/tinker Version ^2.8 | — | — |
league/fractal Version ^0.20.1 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant