Vulnerabilities (CVE)

Filtered by vendor Couchcms Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-41609 1 Couchcms 1 Couchcms 2024-02-28 N/A 6.1 MEDIUM
An open redirect vulnerability in the sanitize_url() parameter of CouchCMS v2.3 allows attackers to redirect a victim user to an arbitrary web site via a crafted URL.
CVE-2018-7662 1 Couchcms 1 Couch 2024-02-28 5.0 MEDIUM 5.3 MEDIUM
Couch through 2.0 allows remote attackers to discover the full path via a direct request to includes/mysql2i/mysql2i.func.php or addons/phpmailer/phpmailer.php.