← Back

Pixelimity

pixelimity

Vendor: Pixelimity • 7 CVEs

CVEs (7)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Pixelimity
1Pixelimity
Jun 17, 2026
May 26, 2025
5.1 MEDIUM· v4
9.8 CRITICAL· v3
5.8 MEDIUM· v2
A vulnerability classified as critical was found in Pixelimity 1.0. Affected by this vulnerability is an unknown functionality of the file /install/index.php of the component Installation. The manipulation of the argumen...Show more
A vulnerability classified as critical was found in Pixelimity 1.0. Affected by this vulnerability is an unknown functionality of the file /install/index.php of the component Installation. The manipulation of the argument site_description leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.Show less
1Pixelimity
1Pixelimity
Jun 17, 2026
May 3, 2022
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
A Remote Code Execution (RCE) vulnerability exists in Pixelimity 1.0 via admin/admin-ajax.php?action=install_theme.
1Pixelimity
1Pixelimity
Jun 17, 2026
May 3, 2022
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
A stored cross-site scripting (XSS) vulnerability in Pixelimity 1.0 allows attackers to execute arbitrary web scripts or HTML via the Title field in admin/pages.php?action=add_new
1Pixelimity
1Pixelimity
Jun 17, 2026
Mar 31, 2022
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
A Cross Site Scripting vulnerabilty exists in Pixelimity 1.0 via the Site Description field in pixelimity/admin/setting.php
1Pixelimity
1Pixelimity
Jun 17, 2026
Aug 17, 2021
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Cross Site Scripting (XSS) vulnerability exists in Pixelimity 1.0 via the HTTP POST parameter to admin/setting.php.
1Pixelimity
1Pixelimity
Jun 17, 2026
Jan 19, 2021
N/A· v4
6.8 MEDIUM· v3
6.0 MEDIUM· v2
Pixelimity 1.0 has cross-site request forgery via the admin/setting.php data [Password] parameter.
1Pixelimity
1Pixelimity
Nov 21, 2024
Dec 6, 2018
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Pixelimity 1.0 has Persistent XSS via the admin/portfolio.php data[title] parameter, as demonstrated by a crafted onload attribute of an SVG element.