CVE-2025-59573
- EPSS 0.22%
- Veröffentlicht 22.09.2025 19:16:25
- Zuletzt bearbeitet 23.04.2026 15:34:04
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in CozyThemes Cozy Blocks cozy-addons allows Code Injection.This issue affects Cozy Blocks: from n/a through <= 2.1.29.
CVE-2025-47485
- EPSS 0.29%
- Veröffentlicht 07.05.2025 14:19:49
- Zuletzt bearbeitet 23.04.2026 15:30:18
Missing Authorization vulnerability in CozyThemes Cozy Blocks cozy-addons allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Cozy Blocks: from n/a through <= 2.1.22.
CVE-2025-30838
- EPSS 0.3%
- Veröffentlicht 27.03.2025 10:55:22
- Zuletzt bearbeitet 23.04.2026 15:27:10
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows Stored XSS.This issue affects Cozy Blocks: from n/a through <= 2.1.6.
CVE-2024-50441
- EPSS 0.27%
- Veröffentlicht 28.10.2024 18:15:05
- Zuletzt bearbeitet 23.04.2026 15:19:57
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows Stored XSS.This issue affects Cozy Blocks: from n/a through <= 2.0.15.
CVE-2024-50502
- EPSS 0.24%
- Veröffentlicht 28.10.2024 13:15:07
- Zuletzt bearbeitet 23.04.2026 15:20:04
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows DOM-Based XSS.This issue affects Cozy Blocks: from n/a through <= 2.0.18.
CVE-2024-47355
- EPSS 0.24%
- Veröffentlicht 06.10.2024 11:15:14
- Zuletzt bearbeitet 23.04.2026 15:19:13
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows Stored XSS.This issue affects Cozy Blocks: from n/a through <= 2.0.11.