Silverstripe vulnerabilities

63 known vulnerabilities affecting silverstripe/silverstripe.

Total CVEs
63
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH6MEDIUM51LOW3

Vulnerabilities

Page 1 of 4
CVE-2022-37421MEDIUMCVSS 5.4≥ 3.0.0, < 4.11.32022-11-23
CVE-2022-37421 [MEDIUM] CWE-79 CVE-2022-37421: Silverstripe silverstripe/cms through 4.11.0 allows XSS. Silverstripe silverstripe/cms through 4.11.0 allows XSS.
nvd
CVE-2022-28803MEDIUMCVSS 5.4fixed in 4.10.92022-06-29
CVE-2022-28803 [MEDIUM] CWE-79 CVE-2022-28803: In SilverStripe Framework through 2022-04-07, Stored XSS can occur in javascript link tags added via In SilverStripe Framework through 2022-04-07, Stored XSS can occur in javascript link tags added via XMLHttpRequest (XHR).
nvd
CVE-2021-41559MEDIUMCVSS 6.5fixed in 4.10.92022-06-28
CVE-2021-41559 [MEDIUM] CWE-776 CVE-2021-41559: Silverstripe silverstripe/framework 4.8.1 has a quadratic blowup in Convert::xml2array() that enable Silverstripe silverstripe/framework 4.8.1 has a quadratic blowup in Convert::xml2array() that enables a remote attack via a crafted XML document.
nvd
CVE-2022-24444MEDIUMCVSS 6.5≤ 2.4.0v2.5.02022-06-28
CVE-2022-24444 [MEDIUM] CWE-384 CVE-2022-24444: Silverstripe silverstripe/framework through 4.10 allows Session Fixation. Silverstripe silverstripe/framework through 4.10 allows Session Fixation.
nvd
CVE-2021-28661MEDIUMCVSS 4.3≥ 3.0.0, ≤ 3.4.12021-10-07
CVE-2021-28661 [MEDIUM] CWE-863 CVE-2021-28661: Default SilverStripe GraphQL Server (aka silverstripe/graphql) 3.x through 3.4.1 permission checker Default SilverStripe GraphQL Server (aka silverstripe/graphql) 3.x through 3.4.1 permission checker not inherited by query subclass.
nvd
CVE-2020-26138MEDIUMCVSS 5.3fixed in 4.6.0v4.6.02021-06-08
CVE-2020-26138 [MEDIUM] CWE-20 CVE-2020-26138: In SilverStripe through 4.6.0-rc1, a FormField with square brackets in the field name skips validati In SilverStripe through 4.6.0-rc1, a FormField with square brackets in the field name skips validation.
nvd
CVE-2020-25817MEDIUMCVSS 4.8fixed in 4.6.0v4.6.02021-06-08
CVE-2020-25817 [MEDIUM] CWE-611 CVE-2020-25817: SilverStripe through 4.6.0-rc1 has an XXE Vulnerability in CSSContentParser. A developer utility mea SilverStripe through 4.6.0-rc1 has an XXE Vulnerability in CSSContentParser. A developer utility meant for parsing HTML within unit tests can be vulnerable to XML External Entity (XXE) attacks. When this developer utility is misused for purposes involving external or user submitted data in custom project code, it can lead to vulnerabilities such as
nvd
CVE-2020-26136MEDIUMCVSS 6.5fixed in 4.6.0v4.6.02021-06-08
CVE-2020-26136 [MEDIUM] CWE-287 CVE-2020-26136: In SilverStripe through 4.6.0-rc1, GraphQL doesn't honour MFA (multi-factor authentication) when usi In SilverStripe through 4.6.0-rc1, GraphQL doesn't honour MFA (multi-factor authentication) when using basic authentication.
nvd
CVE-2020-6164HIGHCVSS 7.5≤ 3.0.0≥ 4.0.0, < 4.4.7+1 more2020-07-15
CVE-2020-6164 [HIGH] CVE-2020-6164: In SilverStripe through 4.5.0, a specific URL path configured by default through the silverstripe/fr In SilverStripe through 4.5.0, a specific URL path configured by default through the silverstripe/framework module can be used to disclose the fact that a domain is hosting a Silverstripe application. There is no disclosure of the specific version. The functionality on this URL path is limited to execution in a CLI context, and is not known to present a vulnera
nvd
CVE-2020-6165MEDIUMCVSS 5.3≥ 3.2.0, < 3.2.4≥ 3.2.5, < 3.3.0+1 more2020-07-15
CVE-2020-6165 [MEDIUM] CWE-276 CVE-2020-6165: SilverStripe 4.5.0 allows attackers to read certain records that should not have been placed into a SilverStripe 4.5.0 allows attackers to read certain records that should not have been placed into a result set. This affects silverstripe/recipe-cms. The automatic permission-checking mechanism in the silverstripe/graphql module does not provide complete protection against lists that are limited (e.g., through pagination), resulting in records that sho
nvd
CVE-2020-9311MEDIUMCVSS 5.4≥ 3.0.0, < 3.7.52020-07-15
CVE-2020-9311 [MEDIUM] CWE-79 CVE-2020-9311: In SilverStripe through 4.5, malicious users with a valid Silverstripe CMS login (usually CMS access In SilverStripe through 4.5, malicious users with a valid Silverstripe CMS login (usually CMS access) can craft profile information which can lead to XSS for other users through specially crafted login form URLs.
nvd
CVE-2019-19326MEDIUMCVSS 5.9≥ 3.0.0, < 3.7.5≥ 4.0.0, < 4.4.7+1 more2020-07-15
CVE-2019-19326 [MEDIUM] CWE-444 CVE-2019-19326: Silverstripe CMS sites through 4.4.4 which have opted into HTTP Cache Headers on responses served by Silverstripe CMS sites through 4.4.4 which have opted into HTTP Cache Headers on responses served by the framework's HTTP layer can be vulnerable to web cache poisoning. Through modifying the X-Original-Url and X-HTTP-Method-Override headers, responses with malicious HTTP headers can return unexpected responses to other consumers of this cached resp
nvd
CVE-2020-9280HIGHCVSS 7.5≥ 4.0.0, ≤ 4.5.02020-04-15
CVE-2020-9280 [HIGH] CWE-434 CVE-2020-9280: In SilverStripe through 4.5, files uploaded via Forms to folders migrated from Silverstripe CMS 3.x In SilverStripe through 4.5, files uploaded via Forms to folders migrated from Silverstripe CMS 3.x may be put to the default "/Uploads" folder instead. This affects installations which allowed upload folder protection via the optional silverstripe/secureassets module under 3.x. This module is installed and enabled by default on the Common Web Platform (
nvd
CVE-2019-12437HIGHCVSS 8.8≤ 4.3.32020-02-19
CVE-2019-12437 [HIGH] CWE-352 CVE-2019-12437: In SilverStripe through 4.3.3, the previous fix for SS-2018-007 does not completely mitigate the ris In SilverStripe through 4.3.3, the previous fix for SS-2018-007 does not completely mitigate the risk of CSRF in GraphQL mutations,
nvd
CVE-2019-12246MEDIUMCVSS 4.3≤ 4.3.32020-02-19
CVE-2019-12246 [MEDIUM] CWE-352 CVE-2019-12246: SilverStripe through 4.3.3 allows a Denial of Service on flush and development URL tools. SilverStripe through 4.3.3 allows a Denial of Service on flush and development URL tools.
nvd
CVE-2019-19325MEDIUMCVSS 6.1≥ 4.4.0, < 4.4.5≥ 4.5.0, < 4.5.22020-02-17
CVE-2019-19325 [MEDIUM] CWE-79 CVE-2019-19325: SilverStripe through 4.4.x before 4.4.5 and 4.5.x before 4.5.2 allows Reflected XSS on the login for SilverStripe through 4.4.x before 4.4.5 and 4.5.x before 4.5.2 allows Reflected XSS on the login form and custom forms. Silverstripe Forms allow malicious HTML or JavaScript to be inserted through non-scalar FormField attributes, which allows performing XSS (Cross-Site Scripting) on some forms built with user input (Request data). This can lead to ph
nvd
CVE-2019-16409MEDIUMCVSS 5.3≥ 3.0.0, ≤ 3.7.42019-09-26
CVE-2019-16409 [MEDIUM] CVE-2019-16409: In the Versioned Files module through 2.0.3 for SilverStripe 3.x, unpublished versions of files are In the Versioned Files module through 2.0.3 for SilverStripe 3.x, unpublished versions of files are publicly exposed to anyone who can guess their URL. This guess could be highly informed by a basic understanding of the symbiote/silverstripe-versionedfiles source code. (Users who upgrade from SilverStripe 3.x to 4.x and had Versioned Files installed have no
nvd
CVE-2019-14272MEDIUMCVSS 5.4≤ 4.0.02019-09-26
CVE-2019-14272 [MEDIUM] CWE-79 CVE-2019-14272: In SilverStripe asset-admin 4.0, there is XSS in file titles managed through the CMS. In SilverStripe asset-admin 4.0, there is XSS in file titles managed through the CMS.
nvd
CVE-2019-14273MEDIUMCVSS 5.3≤ 4.0.02019-09-26
CVE-2019-14273 [MEDIUM] CWE-552 CVE-2019-14273: In SilverStripe assets 4.0, there is broken access control on files. In SilverStripe assets 4.0, there is broken access control on files.
nvd
CVE-2019-12617LOWCVSS 2.7≤ 4.3.32019-09-26
CVE-2019-12617 [LOW] CVE-2019-12617: In SilverStripe through 4.3.3, there is access escalation for CMS users with limited access through In SilverStripe through 4.3.3, there is access escalation for CMS users with limited access through permission cache pollution.
nvd