Squiz / Matrix
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2022-32277 | Squiz Matrix CMS 6.20 is vulnerable to an Insecure Direct Object Reference caused by failure to correctly validate authorization when submitting a request to c… | MEDIUM | 5.3 | Sep 6, 2022 |
| CVE-2019-19374 | An issue was discovered in core/assets/form/form_question_types/form_question_type_file_upload/form_question_type_file_upload.inc in Squiz Matrix CMS 5.5.0 pri… | CRITICAL | 9.1 | Dec 11, 2019 |
| CVE-2019-19373 | An issue was discovered in Squiz Matrix CMS 5.5.0 prior to 5.5.0.3, 5.5.1 prior to 5.5.1.8, 5.5.2 prior to 5.5.2.4, and 5.5.3 prior to 5.5.3.3 where a user can… | HIGH | 7.5 | Dec 11, 2019 |
| CVE-2017-14198 | An issue was discovered in Squiz Matrix before 5.3.6.1 and 5.4.x before 5.4.1.3. Authenticated users with permissions to edit design assets can cause Remote Co… | HIGH | 8.8 | Nov 30, 2017 |
| CVE-2017-14197 | An issue was discovered in Squiz Matrix before 5.3.6.1 and 5.4.x before 5.4.1.3. There are multiple reflected Cross-Site Scripting (XSS) issues in Matrix WYSIW… | MEDIUM | 6.1 | Nov 30, 2017 |
| CVE-2017-14196 | An issue was discovered in Squiz Matrix from 5.3 through to 5.3.6.1 and 5.4.1.3. An information disclosure caused by a Path Traversal issue in the 'File Bridge… | HIGH | 7.5 | Nov 30, 2017 |
Showing 1 to 6 of 6 CVEs