← Back

Borg Project

borg_project

2 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Borg
borg

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Borg Project
1Borg
Jun 17, 2026
Feb 21, 2023
N/A· v4
5.3 MEDIUM· v3
N/A· v2
The Borg theme before 1.1.19 for Backdrop CMS does not sufficiently sanitize path arguments that are passed in via a URL. The function borg_preprocess_page in the file template.php does not properly sanitize incoming pat...Show more
The Borg theme before 1.1.19 for Backdrop CMS does not sufficiently sanitize path arguments that are passed in via a URL. The function borg_preprocess_page in the file template.php does not properly sanitize incoming path arguments before using them.Show less
1Borg Project
1Borg
May 6, 2026
Jan 2, 2017
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
Borg (aka BorgBackup) before 1.0.9 has a flaw in the cryptographic protocol used to authenticate the manifest (list of archives), potentially allowing an attacker to spoof the list of archives.