Skip to content
Noroxi

Hexo records

3 published records for vendor hexo.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
66.7%
Median publish → KEV
No record has entered KEV

All records

3 records
  • Hexo up to v7.0.0 (RC2) was discovered to contain an arbitrary file read vulnerability.

    HighCVSS 7.5No exploitEPSS 35%

    hexo · hexoSep 8, 2023

  • An issue in the verifyPassword function of hexo-theme-matery v2.0.0 allows attackers to bypass authentication and access password protected

    CriticalCVSS 9.8No exploitEPSS 1%

    Apr 19, 2024

  • Hexo versions 0.0.1 to 5.4.0 are vulnerable against stored XSS.

    MediumCVSS 4.6No exploitEPSS 0%

    hexo · hexoNov 30, 2021