ezsystems/ezplatform-kernel vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
GHSA-2W9P-XXQR-H253Highezsystems/ezplatform-kernel: eZ Platform Object Injection in SiteAccessMatchListenerGHSA-MWVH-P3HX-X4GGMediumezsystems/ezplatform-kernel: Ibexa Kernel's files with blacklisted extensions can be still saved to draftsGHSA-GV2C-5G79-H73CLowezsystems/ezplatform-kernel: Ibexa ezplatform-kernel download route allows filename changeCVE-2022-48365Highezsystems/ezpublish-kernel: Company admin role gives excessive privileges in eZ Platform IbexaCVE-2022-48366Lowezsystems/ezplatform-kernel: Timing attack in eZ Platform IbexaGHSA-8H83-CHH2-FCHPCriticalezsystems/ezplatform-kernel: eZ Platform users with the Company admin role can assign any role to any userGHSA-342C-VCFF-2FF2Criticalezsystems/ezplatform-kernel: Login timing attack in ezsystems/ezplatform-kernelGHSA-W8QP-HMH5-4V9VCriticalezsystems/ezplatform-kernel: Object state limitation has no effectCVE-2022-25336Mediumezsystems/ezplatform-kernel: Exposure of Resource to Wrong Sphere in ezsystems/ezplatform-kernelCVE-2021-46875Highezsystems/ezpublish-kernel: Cross-site scripting in eZ Platform Kernel

Stop the waste.
Protect your environment with Kodem.