Skip to main content

Vendor/product archive

colorbox_project / colorbox CVEs

Beta · best-effort

3 CVEs tagged to colorbox_project / colorbox0 Critical, 0 High, 2 Medium, 1 Low, 0 Unrated.

CVE-2026-58591

Published Jul 10, 2026

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Colorbox allows Cross-Site Scripting (XSS). This issue affects Colorbo…

CVSS 5.4 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-3900

Published Apr 23, 2025

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Colorbox allows Cross-Site Scripting (XSS).This issue affects Colorbox…

CVSS 6.1 · Medium
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2015-7881

Published Oct 26, 2015

The Colorbox module 7.x-2.x before 7.x-2.10 for Drupal allows remote authenticated users with certain permissions to bypass intended access restrictions and "add unexpected conten…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1