MODX Revolution is a Content Management System
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2025-28010 modx/revolution is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 3.1.0. | 0.0.0 - 3.1.0 | Medium |
CVE-2017-1000067 modx/revolution is vulnerable to Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in versions 2.0.0 - 2.5.6. | 2.0.0 - 2.5.6 | High |
CVE-2017-9071 modx/revolution is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 2.5.7. | 0.0.0 - 2.5.7 | Medium |
CVE-2017-9070 modx/revolution is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 2.5.7. | 0.0.0 - 2.5.7 | Medium |
CVE-2017-9068 modx/revolution is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 2.5.7. | 0.0.0 - 2.5.7 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
xpdo/xpdo Version ~3.1.0 | — | — |
pimple/pimple Version ^3.0 | — | — |
smarty/smarty Version ^4.0 | — | — |
guzzlehttp/psr7 Version ^2.0 | — | — |
psr/http-client Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant