| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-48313 | Umbraco contains a DOM-XSS | umbraco | Umbraco-CMS | Medium | 4.3 | 2023-12-12 17:23:49 | Deep Dive |
| CVE-2023-48227 | Umbraco CMS Backoffice User can bypass "Publish" restriction | umbraco | Umbraco-CMS | Medium | 4.3 | 2023-12-12 17:12:02 | Deep Dive |
| CVE-2023-38694 | Umbraco CMS vulnerable to possible injection of HTML in an unintended form | umbraco | Umbraco-CMS | Low | 3.5 | 2023-12-12 17:09:08 | Deep Dive |
| CVE-2023-37267 | Umbraco allows possible Admin-level access to backoffice without Auth under rare conditions | umbraco | Umbraco-CMS | High | 7.5 | 2023-07-13 13:43:59 | Deep Dive |
| CVE-2023-32312 | Client secret not mandatory in UmbracoIdentityExtensions | umbraco | UmbracoIdentityExtensions | Low | 3.7 | 2023-06-09 19:29:13 | Deep Dive |
| CVE-2022-22690 | Umbraco Remote ApplicationURL Overwrite | Umbraco | Umbraco CMS | High | 8.6 | 2022-01-18 16:52:22 | Deep Dive |
| CVE-2022-22691 | Umbraco Password Reset URL Poison | Umbraco | Umbraco CMS | Medium | 6.8 | 2022-01-18 16:52:20 | Deep Dive |
| CVE-2020-5809 | Umbraco 跨站脚本漏洞 | - | Umbraco CMS | 中危 | - | 2020-12-30 15:18:06 | Deep Dive |
| CVE-2020-5810 | Umbraco 跨站脚本漏洞 | - | Umbraco CMS | 中危 | - | 2020-12-30 15:18:02 | Deep Dive |
| CVE-2020-5811 | Umbraco 路径遍历漏洞 | - | Umbraco CMS | 中危 | - | 2020-12-30 15:17:57 | Deep Dive |