Products: 14
    Vulnerabilities: 12
    Known Exploited: 0
    2
    Critical Level Threats
    4
    High Level Threats
    4
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-70363

    Incorrect access control in the REST API of Ibexa & Ciril GROUP eZ Platform / Ciril Platform 2.x allows unauthenticated attackers to access sensitive data via enumerating object IDs.

    Last Modified: Jun 02, 2026
    Published: Mar 06, 2026

    CVE-2025-67719

    Ibexa User Bundle is missing password change validation

    Last Modified: Apr 15, 2026
    Published: Dec 11, 2025

    CVE-2024-43369

    Persistent Cross-site Scripting in Ibexa RichText Field Type

    Last Modified: Apr 15, 2026
    Published: Aug 15, 2024

    CVE-2020-23065

    Cross Site Scripting vulnerabiltiy in eZ Systems AS eZPublish Platform v.5.4 and eZ Publish Legacy v.5.4 allows a remote authenticated attacker to execute arbitrary code via the video-js.swf.

    Last Modified: Feb 13, 2025
    Published: Jun 26, 2023

    CVE-2021-46875

    An issue was discovered in eZ Platform Ibexa Kernel before 1.3.1.1. An XSS attack can occur because JavaScript code can be uploaded in a .html or .js file.

    Last Modified: Mar 04, 2025
    Published: Mar 12, 2023
    Items Per Page
    Ibexa Vulnerabilities & Security CVEs | CVE-DB