CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1

CVE-2026-67207 HIGH

Wolf CMS 0.8.3.1 Authorization Bypass via BackupRestoreController

CVSS 8.7 EPSS 0.54% Jul 30, 2026
CVE-2026-67206 HIGH

Wolf CMS 0.8.3.1 Authenticated RCE via FileManagerController File Upload

CVSS 8.7 EPSS 2.13% Jul 30, 2026
CVE-2019-25070 MEDIUM

WolfCMS User Add cross site scripting

CVSS 6.1 EPSS 0.85% Jun 9, 2022
CVE-2012-1932 MEDIUM

A cross-site scripting (XSS) vulnerability in Wolf CMS 0.75 and earlier allows remote attackers to inject arbitrary web script or HTML via the setting[admin_em…

CVSS 4.8 EPSS 0.70% Feb 19, 2020
CVE-2018-18824 MEDIUM

WolfCMS v0.8.3.1 allows XSS via an SVG file to /?/admin/plugin/file_manager/browse/.

CVSS 4.8 EPSS 1.03% Apr 25, 2019
CVE-2018-18823 MEDIUM

WolfCMS 0.8.3.1 allows XSS via an SVG file to /?/admin/plugin/file_manager/browse/.

CVSS 4.8 EPSS 1.03% Apr 25, 2019
CVE-2019-10646 MEDIUM

Wolf CMS v0.8.3.1 is affected by cross site scripting (XSS) in the module Add Snippet (/?/admin/snippet/add). This allows an attacker to insert arbitrary JavaS…

CVSS 6.1 EPSS 0.86% Mar 30, 2019
CVE-2018-15842 MEDIUM

WolfCMS 0.8.3.1 has XSS via the /?/admin/page/add slug parameter.

CVSS 4.8 EPSS 0.66% Aug 25, 2018
CVE-2018-14837 MEDIUM

Wolf CMS 0.8.3.1 has XSS in the Snippets tab, as demonstrated by a ?/admin/snippet/edit/1 URI.

CVSS 4.8 EPSS 0.67% Aug 10, 2018
CVE-2018-8814 MEDIUM

Cross-site request forgery (CSRF) vulnerability in WolfCMS 0.8.3.1 allows remote attackers to hijack the authentication of users for requests that modify plugi…

CVSS 6.5 EPSS 2.99% Apr 4, 2018
CVE-2018-8813 MEDIUM

Open redirect vulnerability in the login[redirect] parameter login functionality in WolfCMS 0.8.3.1 allows remote attackers to redirect users to arbitrary web…

CVSS 4.8 EPSS 3.22% Apr 4, 2018
CVE-2018-1000087 MEDIUM

WolfCMS version version 0.8.3.1 contains a Reflected Cross Site Scripting vulnerability in "Create New File" and "Create New Directory" input box from 'files'…

CVSS 4.8 EPSS 0.64% Mar 13, 2018
CVE-2018-1000084 MEDIUM

WOlfCMS WolfCMS version version 0.8.3.1 contains a Stored Cross-Site Scripting vulnerability in Layout Name (from Layout tab) that can result in low privilege…

CVSS 5.4 EPSS 0.64% Mar 13, 2018
CVE-2018-6890 MEDIUM

Cross-site scripting (XSS) vulnerability in Wolf CMS 0.8.3.1 via the page editing feature, as demonstrated by /?/admin/page/edit/3.

CVSS 4.8 EPSS 0.71% Feb 22, 2018
CVE-2017-11611 MEDIUM

Wolf CMS 0.8.3.1 allows Cross-Site Scripting (XSS) attacks. The vulnerability exists due to insufficient sanitization of the file name in a "create-file-popup"…

CVSS 5.4 EPSS 0.90% Sep 8, 2017
CVE-2015-6568 HIGH

Wolf CMS before 0.8.3.1 allows unrestricted file rename and PHP Code Execution because admin/plugin/file_manager/browse/ (aka the filemanager) does not prevent…

CVSS 8.8 EPSS 10.55% Apr 14, 2017
CVE-2015-6567 HIGH

Wolf CMS before 0.8.3.1 allows unrestricted file upload and PHP Code Execution because admin/plugin/file_manager/browse/ (aka the filemanager) does not validat…

CVSS 8.8 EPSS 10.84% Apr 14, 2017
CVE-2012-1897 MEDIUM

Multiple cross-site request forgery (CSRF) vulnerabilities in Wolf CMS 0.75 and earlier allow remote attackers to hijack the authentication of administrators f…

CVSS 6.8 EPSS 1.19% Oct 1, 2012

Showing 1 to 18 CVEs · page 1