| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2021-23127 | [20210301] - Core - Insecure randomness within 2FA secret generation | Joomla! Project | Joomla! CMS | 超危 | - | 2021-03-04 17:37:14 | Deep Dive |
| CVE-2021-23128 | [20210302] - Core - Potential Insecure FOFEncryptRandval | Joomla! Project | Joomla! CMS | 超危 | - | 2021-03-04 17:37:14 | Deep Dive |
| CVE-2021-23125 | [20210103] - Core - XSS in com_tags image parameters | Joomla! Project | Joomla! CMS | 中危 | - | 2021-01-12 20:19:50 | Deep Dive |
| CVE-2021-23123 | [20210101] - Core - com_modules exposes module names | Joomla! Project | Joomla! CMS | 中危 | - | 2021-01-12 20:19:49 | Deep Dive |
| CVE-2021-23124 | [20210102] - Core - XSS in mod_breadcrumbs aria-label attribute | Joomla! Project | Joomla! CMS | 中危 | - | 2021-01-12 20:19:49 | Deep Dive |
| CVE-2020-5809 | Umbraco 跨站脚本漏洞 | - | Umbraco CMS | 中危 | - | 2020-12-30 15:18:06 | Deep Dive |
| CVE-2020-5810 | Umbraco 跨站脚本漏洞 | - | Umbraco CMS | 中危 | - | 2020-12-30 15:18:02 | Deep Dive |
| CVE-2020-5811 | Umbraco 路径遍历漏洞 | - | Umbraco CMS | 中危 | - | 2020-12-30 15:17:57 | Deep Dive |
| CVE-2020-35615 | [20201106] - Core - CSRF in com_privacy emailexport feature | Joomla! Project | Joomla! CMS | 中危 | - | 2020-12-28 19:39:19 | Deep Dive |
| CVE-2020-35616 | [20201107] - Core - Write ACL violation in multiple core views | Joomla! Project | Joomla! CMS | 高危 | - | 2020-12-28 19:39:19 | Deep Dive |
| CVE-2020-35610 | [20201101] - Core - com_finder ignores access levels on autosuggest | Joomla! Project | Joomla! CMS | 高危 | - | 2020-12-28 19:39:18 | Deep Dive |
| CVE-2020-35611 | [20201102] - Core - Disclosure of secrets in Global Configuration page | Joomla! Project | Joomla! CMS | 高危 | - | 2020-12-28 19:39:18 | Deep Dive |
| CVE-2020-35612 | [20201103] - Core - Path traversal in mod_random_image | Joomla! Project | Joomla! CMS | 高危 | - | 2020-12-28 19:39:18 | Deep Dive |
| CVE-2020-35613 | [20201104] - Core - SQL injection in com_users list view | Joomla! Project | Joomla! CMS | 超危 | - | 2020-12-28 19:39:18 | Deep Dive |
| CVE-2020-35614 | [20201105] - Core - User Enumeration in backend login | Joomla! Project | Joomla! CMS | 中危 | - | 2020-12-28 19:39:18 | Deep Dive |
| CVE-2020-26229 | XML External Entity in Dashboard Widget | TYPO3 | TYPO3.CMS | Low | 3.7 | 2020-11-23 21:15:18 | Deep Dive |
| CVE-2020-26228 | Cleartext storage of session identifier | TYPO3 | TYPO3.CMS | High | 8.1 | 2020-11-23 21:10:16 | Deep Dive |
| CVE-2020-26227 | Cross-Site Scripting in Fluid view helpers | TYPO3 | TYPO3.CMS | Medium | 6.1 | 2020-11-23 21:05:18 | Deep Dive |
| CVE-2020-5640 | OneThird CMS 安全漏洞 | SpiQe Software | OneThird CMS | 超危 | - | 2020-10-20 07:55:20 | Deep Dive |
| CVE-2020-25803 | Authenticated attackers with developer privileges in Crafter Studio may execute OS commands via deep inspection of FreeMarker template exposed objects. | Crafter Software | Crafter CMS | Medium | 4.2 | 2020-10-06 14:21:41 | Deep Dive |