Total
                    5 CVE
                
            | CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 | 
|---|---|---|---|---|---|
| CVE-2017-1000058 | 1 Chevereto | 1 Chevereto | 2025-04-20 | 4.3 MEDIUM | 6.1 MEDIUM | 
| Stored XSS vulnerabilities in chevereto CMS before version 3.8.11, one in the user profile and one in the Exif data parser. | |||||
| CVE-2012-2919 | 1 Chevereto | 1 Chevereto | 2025-04-11 | 5.0 MEDIUM | N/A | 
| Directory traversal vulnerability in Upload/engine.php in Chevereto 1.9.1 allows remote attackers to determine the existence of arbitrary files via a .. (dot dot) in the v parameter. | |||||
| CVE-2012-2918 | 1 Chevereto | 1 Chevereto | 2025-04-11 | 4.3 MEDIUM | N/A | 
| Cross-site scripting (XSS) vulnerability in Upload/engine.php in Chevereto 1.91 allows remote attackers to inject arbitrary web script or HTML via the v parameter. | |||||
| CVE-2021-31721 | 1 Chevereto | 1 Chevereto | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM | 
| Chevereto before 3.17.1 allows Cross Site Scripting (XSS) via an image title at the image upload stage. | |||||
| CVE-2018-12030 | 1 Chevereto | 1 Chevereto | 2024-11-21 | 3.5 LOW | 5.4 MEDIUM | 
| Chevereto Free before 1.0.13 has XSS. | |||||
