Product:

Phpmyfaq

(Phpmyfaq)
Repositories https://github.com/thorsten/phpMyFAQ
#Vulnerabilities 124
Date Id Summary Products Score Patch Annotated
2024-03-26 CVE-2024-29196 phpMyFAQ is an open source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases. There is a Path Traversal vulnerability in Attachments that allows attackers with admin rights to upload malicious files to other locations of the web root. This vulnerability is fixed in 3.2.6. Phpmyfaq 2.7
2022-10-19 CVE-2022-3608 Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.2.0-alpha. Phpmyfaq 8.4
2022-10-29 CVE-2022-3754 Weak Password Requirements in GitHub repository thorsten/phpmyfaq prior to 3.1.8. Phpmyfaq 9.8
2022-10-31 CVE-2022-3765 Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.8. Phpmyfaq 5.4
2022-10-31 CVE-2022-3766 Cross-site Scripting (XSS) - Reflected in GitHub repository thorsten/phpmyfaq prior to 3.1.8. Phpmyfaq 6.1
2022-12-11 CVE-2022-4407 Cross-site Scripting (XSS) - Reflected in GitHub repository thorsten/phpmyfaq prior to 3.1.9. Phpmyfaq 6.1
2022-12-11 CVE-2022-4408 Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.9. Phpmyfaq 5.4
2022-12-11 CVE-2022-4409 Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in GitHub repository thorsten/phpmyfaq prior to 3.1.9. Phpmyfaq 7.5
2023-01-15 CVE-2023-0306 Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.10. Phpmyfaq 5.4
2023-01-15 CVE-2023-0307 Weak Password Requirements in GitHub repository thorsten/phpmyfaq prior to 3.1.10. Phpmyfaq 9.8