craftcms/cms Security Advisories for 5.0.0-alpha.1 (2)
-
[HIGH] Craft CMS Arbitrary System File Read
PKSA-jkbm-w624-yb7q CVE-2024-52292 GHSA-cw6g-qmjq-6w2w
Affected version: >=3.5.13,<=4.12.6.1|>=5.0.0-alpha.1,<=5.4.7.1
Reported by:
GitHub -
[MEDIUM] Craft CMS vulnerable to stored XSS in breadcrumb list and title fields
PKSA-8qn2-9hhy-cmx1 CVE-2024-45406 GHSA-28h4-788g-rh42
Affected version: >=5.0.0,<5.1.2
Reported by:
GitHub