Filter
-Infinity
0

SmartyCode Injection

First published (updated )

composer/smarty/smartyCross site scripting vulnerability in Javascript escaping in smarty/smarty

7.1
First published (updated )

DebianPHP Code Injection by malicious block or filename in Smarty

8.8
First published (updated )

SmartyXSS

First published (updated )

SmartyUnspecified vulnerability in the math plugin in Smarty before 3.0.0 RC1 has unknown impact and remot…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

SmartyMultiple unspecified vulnerabilities in the parser implementation in Smarty before 3.0.0 RC3 have un…

First published (updated )

SmartyXSS

First published (updated )

SmartySmarty before 3.0.0 beta 4 does not consider the umask value when setting the permissions of files, …

7.5
First published (updated )

SmartyUnspecified vulnerability in Smarty before 3.0.0 beta 6 allows remote attackers to execute arbitrary…

7.5
First published (updated )

SmartyUnspecified vulnerability in the fetch plugin in Smarty before 3.0.2 has unknown impact and remote a…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

SmartySmarty before 3.0.0, when security is enabled, does not prevent access to the (1) dynamic and (2) pr…

First published (updated )

SmartyInput Validation

First published (updated )

SmartyUnknown vulnerability in the regex_replace modifier (modifier.regex_replace.php) in Smarty before 2.…

7.5
First published (updated )

SmartyPHP remote file inclusion vulnerability in unit_test/test_cases.php in Smarty 2.6.1 allows remote at…

7.5
First published (updated )

SmartyThe _expand_quoted_text function in libs/Smarty_Compiler.class.php in Smarty 2.6.20 r2797 and earlie…

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

SmartyCode Injection

7.5
First published (updated )

SmartyInput Validation

7.5
First published (updated )

SmartyMultiple unspecified vulnerabilities in Smarty before 3.0.0 beta 6 have unknown impact and attack ve…

First published (updated )

DebianInput Validation

First published (updated )

SmartyCode Injection

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

debian/smarty3Code Injection

First published (updated )

composer/smarty/smartyPath Traversal

7.1
First published (updated )

composer/smarty/smartyPath Traversal

7.5
First published (updated )

composer/smarty/smartySandbox Escape by math function in smarty

8.8
First published (updated )

DebianCode Injection

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

DebianCode Injection

7.5
First published (updated )

composer/smarty/smartyAccess to restricted PHP code by dynamic static class access in smarty

8.8
First published (updated )

SmartyWordPress Smarty for WordPress Plugin <= 3.1.35 is vulnerable to Cross Site Scripting (XSS)

First published (updated )

SmartyXSS

First published (updated )

SmartyInput Validation

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203