The SilverStripe framework
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-242641 New silverstripe/framework is vulnerable to Cross-Site Scripting (XSS) in versions 3.0.0 - 6.2.1. | 3.0.0 - 6.2.1 | Medium |
AIKIDO-2026-582447 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. silverstripe/framework is vulnerable to Remote Code Execution (RCE) in versions 3.0.0 - 5.4.29. | 3.0.0 - 5.4.29 | High |
CVE-2025-30148 silverstripe/framework is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 5.3.23. | 0.0.0 - 5.3.23 | Medium |
CVE-2024-47605 silverstripe/framework is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 5.3.8. | 0.0.0 - 5.3.8 | Medium |
CVE-2024-53277 silverstripe/framework is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 5.3.8. | 0.0.0 - 5.3.8 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
m1/env Version ^2.2.0 | — | — |
league/csv Version ^9.27 | — | — |
embed/embed Version ^4.4.7 | — | — |
symfony/intl Version ^7.0 | — | — |
symfony/mime Version ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant