The SilverStripe Content Management System
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2025-10235 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. silverstripe/cms is vulnerable to Cross-site Scripting (XSS) in versions 4.0.0 - 5.3.2. | 4.0.0 - 5.3.2 | Medium |
CVE-2022-37421 silverstripe/cms is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 4.0.0 - 4.11.3. | 4.0.0 - 4.11.3 | Medium |
CVE-2020-9311 silverstripe/cms is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 4.5.0. | 0.0.0 - 4.5.0 | Medium |
CVE-2020-6164 silverstripe/cms is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor in versions 0.0.0 - 4.5.0. | 0.0.0 - 4.5.0 | High |
CVE-2020-9309 silverstripe/cms is vulnerable to Unrestricted Upload of File with Dangerous Type in versions 0.0.0 - 4.5.0. | 0.0.0 - 4.5.0 | High |
| Dependency | Last Release | Score |
|---|---|---|
silverstripe/admin Version ^3.2 | — | — |
silverstripe/reports Version ^6 | — | — |
silverstripe/framework Version ^6.2 | — | — |
silverstripe/versioned Version ^3 | — | — |
silverstripe/siteconfig Version ^6 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant