Products: 44
Vulnerabilities: 102
Known Exploited: 0
2
Critical Level Threats
51
High Level Threats
49
Medium Level Threats
0
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2019-25433
XOOPS CMS 2.5.9 SQL Injection via gerar_pdf.php
Last Modified: Apr 15, 2026
Published: Feb 22, 2026
CVE-2023-36217
Cross Site Scripting vulnerability in Xoops CMS v.2.5.10 allows a remote attacker to execute arbitrary code via the category name field of the image manager function.
Last Modified: Nov 21, 2024
Published: Aug 03, 2023
CVE-2019-16684
An issue was discovered in the image-manager in Xoops 2.5.10. When any image with a JavaScript payload as its name is hovered over in the list or in the Edit page, the payload executes.
Last Modified: Nov 21, 2024
Published: Sep 30, 2019
CVE-2019-16683
An issue was discovered in the image-manager in Xoops 2.5.10. When the breadcrumb showing the category name is hovered over while editing any image, a JavaScript payload executes.
Last Modified: Nov 21, 2024
Published: Sep 30, 2019
CVE-2017-12138
XOOPS Core 2.5.8 has a stored URL redirect bypass vulnerability in /modules/profile/index.php because of the URL filter.
Last Modified: Apr 20, 2025
Published: Aug 02, 2017
Items Per Page
