📦 Erxes

by Erxes

🔍 What is Erxes?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-57190

CRITICAL CVSS 9.8 Jun 10, 2025

CVE-2024-57190 is an authentication bypass vulnerability in Erxes that allows attackers to impersonate any user by sending a malicious HTTP header. This affects all Erxes deployments running versions ...

CVE-2024-57189

MEDIUM CVSS 5.4 Jun 10, 2025

This vulnerability allows authenticated attackers to write arbitrary files on the system via path traversal in Erxes's GraphQL API. It affects all Erxes installations before version 1.6.2 where users ...