elefant/cms

composerv2.4.1-stable

The Elefant CMS

License MITpermissive2 versions6 deps
jbroadway/elefant
8
/ 100
Health
do not use

elefant/cms has critical vulnerabilities — do not use

Update to >= 1.3.13 to fix known vulnerabilities

  • Low health score (8/100)
  • 4 high severity vulnerabilities
  • 3 critical vulnerabilities
Health breakdown0 – 100
5/25
maintenance
0/20
popularity
0/25
security
3/15
maturity
0/15
community
Vulnerabilities
13
3 critical4 high6 medium
Advisories (13)
SeverityIDSummaryFixed in
mediumCVE-2017-20060Cross site scripting in Elefant CMS1.3.13
mediumCVE-2017-20058Cross site scripting in Elefant CMS1.3.13
criticalCVE-2018-16974Elefant CMS Code Execution Vulnerability2.0.7
highCVE-2018-16387Elefant CMS CSRF Vulnerability2.0.5
mediumCVE-2017-20059Cross site scripting in Elefant CMS1.3.13
highCVE-2017-20064Code injection in Elefant CMS1.3.13
mediumCVE-2017-20061Cross site scripting in Elefant CMS1.3.13
highCVE-2017-20063Unrestricted Upload of File with Dangerous Type in Elefant CMS1.3.13
criticalCVE-2018-15601Elefant CMS Improper Input Validation2.0.4
highCVE-2017-20062Cross-Site Request Forgery in Elefant CMS1.3.13
mediumCVE-2012-1296Elefant CMS Multiple XSS Vulnerabilities1.1.5-Beta
criticalCVE-2018-16975Elefant CMS PHP Code Execution Vulnerability2.0.7
mediumCVE-2017-20057Cross site scripting in Elefant CMS1.3.13

Health History

Dependency Tree

License Audit

API access

Get this data programmatically — free, no authentication.

curl https://depscope.dev/api/check/composer/elefant/cms

Last updated · 2024-10-16T15:56:29+00:00

elefant/cms — Health Score 8/100 | DepScope