apostrophe vulnerabilities

The Apostrophe Content Management System.

  • latest version

    4.20.0

  • latest non vulnerable version

  • first published

    12 years ago

  • latest version published

    24 days ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the apostrophe package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Cross-site Scripting (XSS)

    >=2.63.0 <3.4.0
    • H
    Insufficient Session Expiration

    >=2.63.0 <3.4.0
    • H
    Denial of Service (DoS)

    <2.97.1
    • M
    Open Redirect

    <2.92.0

    Package versions

    100 VERSIONS IN TOTAL See all versions
    versionpublisheddirect vulnerabilities
    4.20.06 Aug, 2025
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    4.19.09 Jul, 2025
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    4.18.011 Jun, 2025
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    4.17.116 May, 2025
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    4.17.1-alpha.316 May, 2025
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    4.17.1-alpha.216 May, 2025
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    4.17.1-alpha.116 May, 2025
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    4.17.014 May, 2025
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    4.16.014 May, 2025
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    4.15.228 Apr, 2025
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L