Humhub
This hub aggregates every CVE we track for Humhub, a product in the consumer software space. Use it to gauge the current risk picture and drill into individual advisories.
13
CVEs tracked
0
Critical
1
High
0
In CISA KEV
Severity distribution
MEDIUM12HIGH1
Monthly trend
0
0
1
0
0
0
0
0
0
0
0
0
0
0
1
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 13 most recently published vulnerabilities affecting Humhub.
- CVE-2025-64442HumHub is vulnerable to XSS through its Meta Search component6.1
- CVE-2024-52043User enumeration in HubHub5.3
- CVE-2022-31133Cross site scripting in HumHub5.9
- CVE-2017-20028HumHub privileges management5.6
- CVE-2017-20027HumHub DOM cross site scriting4.3
- CVE-2017-20026HumHub Reflected cross site scriting4.3
- CVE-2022-24865Improper access control in humhub6.5
- CVE-2021-43847Authorization Bypass in Space Invite in HumHub6.5
- CVE-2019-11564A cross-site scripting (XSS) vulnerability in HumHub 1.3.12 allows remote attackers to inject arbitrary web script or HTML via a /protected/vendor/codeception/codeception/tests/data/app/view/index....6.1
- CVE-2019-9094A Reflected Cross Site Scripting (XSS) Vulnerability was discovered in /s/adada/cfiles/upload in Humhub 1.3.10 Community Edition. The user-supplied input containing JavaScript in the filename is ec...6.1
- CVE-2019-9093A Reflected Cross Site Scripting (XSS) Vulnerability was discovered in file/file/upload in Humhub 1.3.10 Community Edition. The user-supplied input containing a JavaScript payload in the filename p...6.1
- CVE-2016-1229Cross-site scripting (XSS) vulnerability in HumHub 0.20.0-beta.1 through 0.20.1 and 1.0.0-beta before 1.0.0-beta.3 allows remote authenticated users to inject arbitrary web script or HTML via unspe...5.4
- CVE-2014-9528SQL injection vulnerability in the actionIndex function in protected/modules_core/notification/controllers/ListController.php in HumHub 0.10.0-rc.1 and earlier allows remote authenticated users to ...7.5
Product normalization is registry-driven with AI assist and human review. How it works