5.1

CVSS4.0

CVE-2025-41052 - Stored Cross-Site Scripting vulnerability in appRain CMF

A vulnerability has been discovered in appRain CMF version 4.0.5, consisting of a stored authenticated XSS due to a lack of proper validation of user input, through the 'data[Addon][layouts]' and 'data[Addon][layouts_except]' parameters in /apprain/developer/addons/update/canvasjs.

📅 Published: Sept. 4, 2025, 11:13 a.m. 🔄 Last Modified: Sept. 4, 2025, 5:52 p.m.

5.1

CVSS4.0

CVE-2025-41051 - Stored Cross-Site Scripting vulnerability in appRain CMF

A vulnerability has been discovered in appRain CMF version 4.0.5, consisting of a stored authenticated XSS due to a lack of proper validation of user input, through the 'data[Addon][layouts]' and 'data[Addon][layouts_except]' parameters in /apprain/developer/addons/update/bootstrap.

📅 Published: Sept. 4, 2025, 11:13 a.m. 🔄 Last Modified: Sept. 4, 2025, 6:42 p.m.

5.1

CVSS4.0

CVE-2025-41050 - Stored Cross-Site Scripting vulnerability in appRain CMF

A vulnerability has been discovered in appRain CMF version 4.0.5, consisting of a stored authenticated XSS due to a lack of proper validation of user input, through the 'data[Addon][layouts]' and 'data[Addon][layouts_except]' parameters in /apprain/developer/addons/update/base_libs.

📅 Published: Sept. 4, 2025, 11:12 a.m. 🔄 Last Modified: Sept. 4, 2025, 6:42 p.m.

5.1

CVSS4.0

CVE-2025-41049 - Stored Cross-Site Scripting vulnerability in appRain CMF

A vulnerability has been discovered in appRain CMF version 4.0.5, consisting of a stored authenticated XSS due to a lack of proper validation of user input, through the 'data[Addon][layouts]' and 'data[Addon][layouts_except]' parameters in /apprain/developer/addons/update/appform.

📅 Published: Sept. 4, 2025, 11:12 a.m. 🔄 Last Modified: Sept. 4, 2025, 6:43 p.m.

5.1

CVSS4.0

CVE-2025-41048 - Stored Cross-Site Scripting vulnerability in appRain CMF

A vulnerability has been discovered in appRain CMF version 4.0.5, consisting of a stored authenticated XSS due to a lack of proper validation of user input, through the 'data[Addon][layouts]' and 'data[Addon][layouts_except]' parameters in /apprain/developer/addons/update/admin.

📅 Published: Sept. 4, 2025, 11:12 a.m. 🔄 Last Modified: Sept. 4, 2025, 6:43 p.m.

5.1

CVSS4.0

CVE-2025-41047 - Stored Cross-Site Scripting vulnerability in appRain CMF

A vulnerability has been discovered in appRain CMF version 4.0.5, consisting of a stored authenticated XSS due to a lack of proper validation of user input, through the 'data[Addon][layouts]' and 'data[Addon][layouts_except]' parameters in /apprain/developer/addons/update/ace.

📅 Published: Sept. 4, 2025, 11:12 a.m. 🔄 Last Modified: Sept. 4, 2025, 6:43 p.m.

5.1

CVSS4.0

CVE-2025-41046 - Stored Cross-Site Scripting vulnerability in appRain CMF

A vulnerability has been discovered in appRain CMF version 4.0.5, consisting of a stored authenticated XSS due to a lack of proper validation of user input, through the 'data[Addon][layouts]' and 'data[Addon][layouts_except]' parameters in /apprain/developer/addons/update/960grid.

📅 Published: Sept. 4, 2025, 11:12 a.m. 🔄 Last Modified: Sept. 4, 2025, 6:43 p.m.

5.1

CVSS4.0

CVE-2025-41045 - Stored Cross-Site Scripting vulnerability in appRain CMF

A vulnerability has been discovered in appRain CMF version 4.0.5, consisting of a stored authenticated XSS due to a lack of proper validation of user input, through the 'data[sconfig][ethical_licensekey]' parameter in /apprain/admin/config/ethical.

📅 Published: Sept. 4, 2025, 11:11 a.m. 🔄 Last Modified: Sept. 4, 2025, 6:43 p.m.

5.1

CVSS4.0

CVE-2025-41044 - Stored Cross-Site Scripting vulnerability in appRain CMF

A vulnerability has been discovered in appRain CMF version 4.0.5, consisting of a stored authenticated XSS due to a lack of proper validation of user input, through the 'data[Page][name]' parameter in /apprain/page/manage-static-pages/create.

📅 Published: Sept. 4, 2025, 11:11 a.m. 🔄 Last Modified: Sept. 4, 2025, 6:43 p.m.

5.1

CVSS4.0

CVE-2025-41043 - Stored Cross-Site Scripting vulnerability in appRain CMF

A vulnerability has been discovered in appRain CMF version 4.0.5, consisting of a stored authenticated XSS due to a lack of proper validation of user input, through the 'data[AppReportCode][id]' and 'data[AppReportCode][name]' parameters in /apprain/appreport/manage/.

📅 Published: Sept. 4, 2025, 11:11 a.m. 🔄 Last Modified: Sept. 4, 2025, 6:43 p.m.
Total resulsts: 309472
Page 131 of 30,948
« previous page » next page
Filters