CVE-2026-36759
- EPSS 0.21%
- Veröffentlicht 30.04.2026 16:16:42
- Zuletzt bearbeitet 30.04.2026 18:16:28
A Server-Side Request Forgery (SSRF) in the /themes/{name}/upgrade-from-uri endpoint of halo v2.22.14 allows authenticated attackers to scan internal resources via a crafted GET request.
CVE-2026-36758
- EPSS 0.17%
- Veröffentlicht 30.04.2026 16:16:42
- Zuletzt bearbeitet 30.04.2026 18:16:28
A Server-Side Request Forgery (SSRF) in the /themes/-/install-from-uri endpoint of halo v2.22.14 allows authenticated attackers to scan internal resources via a crafted GET request.
CVE-2026-36756
- EPSS 0.14%
- Veröffentlicht 30.04.2026 16:16:42
- Zuletzt bearbeitet 30.04.2026 18:16:28
A Server-Side Request Forgery (SSRF) in the /plugins/-/install-from-uri endpoint of halo v2.22.14 allows authenticated attackers to scan internal resources via a crafted GET request.
CVE-2026-36757
- EPSS 0.17%
- Veröffentlicht 30.04.2026 00:00:00
- Zuletzt bearbeitet 30.04.2026 18:16:28
A Server-Side Request Forgery (SSRF) in the /plugins/{name}/upgrade-from-uri endpoint of halo v2.22.14 allows authenticated attackers to scan internal resources via a crafted GET request.
CVE-2025-70886
- EPSS 0.44%
- Veröffentlicht 12.02.2026 00:00:00
- Zuletzt bearbeitet 18.02.2026 15:45:23
An issue in halo v.2.22.4 and before allows a remote attacker to cause a denial of service via a crafted payload to the public comment submission endpoint
CVE-2025-15141
- EPSS 0.22%
- Veröffentlicht 28.12.2025 15:02:05
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was determined in Halo up to 2.21.10. This issue affects some unknown processing of the file /actuator of the component Configuration Handler. Executing a manipulation can lead to information disclosure. The attack may be performed fr...
CVE-2025-44594
- EPSS 0.35%
- Veröffentlicht 09.09.2025 00:00:00
- Zuletzt bearbeitet 17.09.2025 19:34:21
halo v2.20.17 and before is vulnerable to server-side request forgery (SSRF) in /apis/uc.api.storage.halo.run/v1alpha1/attachments/-/upload-from-url.
CVE-2025-44593
- EPSS 0.24%
- Veröffentlicht 09.09.2025 00:00:00
- Zuletzt bearbeitet 18.09.2025 20:33:52
Halo prior to 2.20.13 allows bypassing file type detection and uploading malicious files such as .exe and .html files. Specifically, .html files can trigger stored XSS vulnerabilities. This vulnerability is fixed in 2.20.13
CVE-2025-44595
- EPSS 0.22%
- Veröffentlicht 09.09.2025 00:00:00
- Zuletzt bearbeitet 18.09.2025 20:33:03
Halo v2.20.17 and before is vulnerable to Cross Site Scripting (XSS) in /halo_host/archives/{name}.
- EPSS 0.64%
- Veröffentlicht 25.04.2025 15:08:00
- Zuletzt bearbeitet 03.02.2026 19:16:10
Halo is an open source website building tool. Prior to version 2.20.13, a vulnerability in Halo allows attackers to bypass file type validation controls. This bypass enables the upload of malicious files including executables and HTML files, which ca...