Vulnerabilities (CVE)

Filtered by vendor Dcatadmin Subscribe
Filtered by product Dcat Admin
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-54775 1 Dcatadmin 1 Dcat Admin 2025-04-22 N/A 4.8 MEDIUM
Dcat-Admin v2.2.0-beta and v2.2.2-beta contains a Cross-Site Scripting (XSS) vulnerability via /admin/auth/menu and /admin/auth/extensions.
CVE-2024-54774 1 Dcatadmin 1 Dcat Admin 2025-04-21 N/A 4.8 MEDIUM
Dcat Admin v2.2.0-beta contains a cross-site scripting (XSS) vulnerability in /admin/articles/create.
CVE-2023-33736 1 Dcatadmin 1 Dcat Admin 2025-01-10 N/A 5.4 MEDIUM
A stored cross-site scripting (XSS) vulnerability in Dcat-Admin v2.1.3-beta allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the URL parameter.