x
xoops
Security Risk Profile
57
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 102 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from May 3, 2002 to present
102
Total CVEs
53
Critical+High
0
Exploited
46
Unpatched
Threat Assessment
Avg CVSS
6.4
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
46
Critical/High
Risk Level
57/100
medium
Severity Distribution
Critical
2High
51Medium
49Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
SQL Injection
45
2
XSS
31
3
Path Traversal
5
4
Infoleak
3
Most Affected Products
1. Xoops Xoops247
2. Ishii Pukiwikimod15
3. Xoops Xoops Dictionary3
4. Bluemoon PopnupBlog3
5. Alexandre Amaral Xoops Celepar2
Recent Vulnerabilities
See more →CVE-2019-25433
CVSS 8.8high
XOOPS CMS 2.5.9 SQL Injection via gerar_pdf.php
Feb 22, 2026🔧 No Patch
CVE-2023-36217
CVSS 9.0critical
Aug 3, 2023🔧 No Patch
CVE-2019-16684
CVSS 4.8medium
Sep 30, 2019
CVE-2019-16683
CVSS 4.8medium
Sep 30, 2019
CVE-2017-12138
CVSS 6.1medium
Aug 2, 2017🔧 No Patch
CVE-2017-12139
CVSS 6.1medium
Aug 2, 2017🔧 No Patch
CVE-2017-11174
CVSS 9.8critical
Jul 12, 2017🔧 No Patch
CVE-2017-7944
CVSS 6.1medium
Apr 24, 2017🔧 No Patch
CVE-2017-7290
CVSS 7.2high
Mar 30, 2017🔧 No Patch
CVE-2014-8999
CVSS 6.5medium
Nov 20, 2014🔧 No Patch
Monitor xoops in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.