VYPR

Silverpeas

by Silverpeas

Source repositories

CVEs (22)

  • CVE-2025-45055MedJun 9, 2025
    risk 0.00cvss 5.4epss 0.00

    Silverpeas 6.4.2 contains a stored cross-site scripting (XSS) vulnerability in the event management module. An authenticated user can upload a malicious SVG file as an event attachment, which, when viewed by an administrator, executes embedded JavaScript in the admin's session.…

  • CVE-2024-48814HigJan 3, 2025
    risk 0.00cvss 7.5epss 0.01

    SQL Injection vulnerability in Silverpeas 6.4.1 allows a remote attacker to obtain sensitive information via the ViewType parameter of the findbywhereclause function

Page 2 of 2