CVE-2025-59573
- EPSS 0.03%
- Veröffentlicht 22.09.2025 19:16:25
- Zuletzt bearbeitet 15.04.2026 00:35:42
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in CozyThemes Cozy Blocks cozy-addons allows Code Injection.This issue affects Cozy Blocks: from n/a through <= 2.1.29.
CVE-2025-47485
- EPSS 0.12%
- Veröffentlicht 07.05.2025 14:19:49
- Zuletzt bearbeitet 15.04.2026 00:35:42
Missing Authorization vulnerability in CozyThemes Cozy Blocks cozy-addons allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Cozy Blocks: from n/a through <= 2.1.22.
CVE-2025-30838
- EPSS 0.14%
- Veröffentlicht 27.03.2025 10:55:22
- Zuletzt bearbeitet 15.04.2026 00:35:42
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows Stored XSS.This issue affects Cozy Blocks: from n/a through <= 2.1.6.
CVE-2024-50441
- EPSS 0.36%
- Veröffentlicht 28.10.2024 18:15:05
- Zuletzt bearbeitet 01.04.2026 16:19:05
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows Stored XSS.This issue affects Cozy Blocks: from n/a through <= 2.0.15.
CVE-2024-50502
- EPSS 0.2%
- Veröffentlicht 28.10.2024 13:15:07
- Zuletzt bearbeitet 01.04.2026 16:19:13
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows DOM-Based XSS.This issue affects Cozy Blocks: from n/a through <= 2.0.18.
CVE-2024-47355
- EPSS 0.17%
- Veröffentlicht 06.10.2024 11:15:14
- Zuletzt bearbeitet 15.04.2026 00:35:42
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows Stored XSS.This issue affects Cozy Blocks: from n/a through <= 2.0.11.