Skip to content
Noroxi

kohanaframework records

3 published records for vendor kohanaframework.

Researcher profile

Entered KEV
0 · 0%
Weaponized
1 · 33.3%
Pre-auth RCE
0
With a fix record
66.7%
Median publish → KEV
No record has entered KEV

All records

3 records
  • CVE-2014-8684
    61This week

    CodeIgniter before 3.0 and Kohana 3.2.3 and earlier and 3.3.x through 3.3.2 make it easier for remote attackers to spoof session cookies and

    CriticalCVSS 9.8WeaponizedEPSS 72%

    codeigniter · codeigniterSep 19, 2017

  • Kohana through 3.3.6 has SQL Injection when the order_by() parameter can be controlled.

    CriticalCVSS 9.8Proof of conceptEPSS 3%

    kohanaframework · kohanaFeb 21, 2019

  • Cross-site scripting (XSS) vulnerability in the Security component of Kohana before 3.3.6 allows remote attackers to inject arbitrary web sc

    MediumCVSS 6.1No exploitEPSS 2%

    kohanaframework · kohanaAug 31, 2017