thorsten/phpmyfaq Security Advisories for 3.1.16 (17)
-
[MEDIUM] thorsten/phpmyfaq Unintended File Download Triggered by Embedded Frames
PKSA-nm7m-ddfs-x1rd CVE-2024-55889 GHSA-m3r7-8gw7-qwvc
Affected version: <3.2.10
Reported by:
GitHub -
[HIGH] phpMyFAQ Generates an Error Message Containing Sensitive Information if database server is not available
PKSA-zk9c-crx1-g563 CVE-2024-54141 GHSA-vrjr-p3xp-xx2x
Affected version: <4.0.0
Reported by:
GitHub -
[MEDIUM] phpMyFAQ Cross-site Scripting vulnerability
PKSA-dp4r-92p1-jm3r CVE-2023-6890 GHSA-4h37-q5j3-hw96
Affected version: <3.1.17
Reported by:
GitHub -
[MEDIUM] phpMyFAQ Cross-site Scripting vulnerability
PKSA-z2gn-4mp6-7kgx CVE-2023-6889 GHSA-w8xj-992g-842f
Affected version: <3.1.17
Reported by:
GitHub -
[MEDIUM] Cross-site Scripting (XSS) in thorsten/phpmyfaq
PKSA-3zxr-6q1g-y9pc CVE-2023-5867 GHSA-prrv-r843-4p75
Affected version: <3.2.2
Reported by:
GitHub -
[MEDIUM] Sensitive cookie in HTTPS session without 'Secure' attribute in thorsten/phpmyfaq
PKSA-234x-mfj9-vyxm CVE-2023-5866 GHSA-34w4-wrqp-j47g
Affected version: <3.2.1
Reported by:
GitHub -
[HIGH] Insufficient Session Expiration in thorsten/phpmyfaq
PKSA-mhmh-zvw7-ctt3 CVE-2023-5865 GHSA-f728-prhw-2g68
Affected version: <3.2.2
Reported by:
GitHub -
[HIGH] phpMyFAQ Cross-site Scripting vulnerability
PKSA-fwqb-wfgt-vhnq CVE-2023-5864 GHSA-g5hp-328h-jj98
Affected version: <3.2.1
Reported by:
GitHub -
[HIGH] phpMyFAQ Cross-site Scripting vulnerability
PKSA-fy6w-gxhz-b2mb CVE-2023-5863 GHSA-j4vj-w5rj-8grw
Affected version: <3.2.2
Reported by:
GitHub -
[HIGH] phpMyFAQ Cross-site Scripting vulnerability
PKSA-473w-z13b-432n CVE-2023-5319 GHSA-j5ww-5xf4-hqm2
Affected version: <3.1.18
Reported by:
GitHub -
[MEDIUM] phpMyFAQ allows unrestricted file types in image field
PKSA-mb8f-3r9h-zv2d CVE-2023-5227 GHSA-qcjg-hvg6-hxcp
Affected version: <3.1.18
Reported by:
GitHub -
[CRITICAL] phpMyFAQ Cross-site Scripting vulnerability
PKSA-j9jt-7g13-t74m CVE-2023-5316 GHSA-58v7-58c2-qwm9
Affected version: <3.1.18
Reported by:
GitHub -
[MEDIUM] phpMyFaq Cross-site Scripting vulnerability
PKSA-c9gj-nswj-c8v6 CVE-2023-5317 GHSA-5jwv-m8h3-69cg
Affected version: <3.1.18
Reported by:
GitHub -
[CRITICAL] phpMyFAQ Cross-site Scripting vulnerability
PKSA-hr4h-nw1k-8zbd CVE-2023-5320 GHSA-pp4w-g5p4-85p2
Affected version: <3.1.18
Reported by:
GitHub -
[MEDIUM] phpMyFAQ Cross-site Scripting
PKSA-5mf7-1xx2-r8qf CVE-2023-3469 GHSA-v6g2-jwrm-h5r5
Affected version: <3.2.0-beta.2
Reported by:
GitHub -
[MEDIUM] phpMyFAQ vulnerable to stored Cross-site Scripting
PKSA-nbfj-yt53-w4ff CVE-2023-2753 GHSA-vppq-6ff8-2m8w
Affected version: <3.2.0-beta
Reported by:
GitHub -
[MEDIUM] phpMyFAQ vulnerable to stored Cross-site Scripting
PKSA-5wnq-2nqs-gct1 CVE-2023-2752 GHSA-j657-pjgc-c4h6
Affected version: <3.2.0-beta
Reported by:
GitHub