VYPR

Ez Platform

by Ibexa

CVEs (3)

  • CVE-2025-70363HigMar 6, 2026
    risk 0.49cvss 7.5epss 0.00

    Incorrect access control in the REST API of Ibexa & Ciril GROUP eZ Platform / Ciril Platform 2.x allows unauthenticated attackers to access sensitive data via enumerating object IDs.

  • CVE-2022-48365HigMar 12, 2023
    risk 0.40cvss 7.2epss 0.01

    An issue was discovered in eZ Platform Ibexa Kernel before 1.3.26. The Company admin role gives excessive privileges.

  • CVE-2022-48366LowMar 12, 2023
    risk 0.24cvss 3.7epss 0.00

    An issue was discovered in eZ Platform Ibexa Kernel before 1.3.19. It allows determining account existence via a timing attack.