ezsystems/ezpublish-kernel Security Advisories for v7.5.15 (9)
-
Reported by:
GitHub -
Reported by:
GitHub -
Company admin role gives excessive privileges in eZ Platform Ibexa
Affected version: >=7.5.0,<7.5.30
Reported by:
GitHub -
Cross Site Scripting in eZ Platform Ibexa Kernel
Affected version: >=7.5.0,<7.5.15.2|>=6.13.0,<6.13.8.2
Reported by:
GitHub -
User account enumeration in eZ Publish Ibexa Kernel
Affected version: >=7.5.0,<7.5.15.1|>=6.13.0,<6.13.8.1
Reported by:
GitHub -
eZ Platform users with the Company admin role can assign any role to any user
Affected version: >=7.5.0,<7.5.30
Reported by:
GitHub -
Login timing attack in ezsystems/ezpublish-kernel
Affected version: >=7.5.0,<7.5.29
Reported by:
GitHub -
Object state limitation has no effect
Affected version: >=7.5.0,<7.5.28
Reported by:
GitHub -
Reported by:
GitHub