Vulnerabilities (CVE)

Filtered by vendor Expressionengine Subscribe
Filtered by product Expressionengine
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-17874 1 Expressionengine 1 Expressionengine 2020-07-06 4.3 MEDIUM 6.1 MEDIUM
ExpressionEngine before 4.3.5 has reflected XSS.
CVE-2017-1000160 1 Expressionengine 1 Expressionengine 2020-07-06 3.5 LOW 5.4 MEDIUM
EllisLab ExpressionEngine 3.4.2 is vulnerable to cross-site scripting resulting in PHP code injection