Thomas Seidl maintains a focused search API product where the recorded vulnerability signal centers on application-layer input-handling issues, specifically cross-site scripting and cross-site request forgery weaknesses. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Thomas Seidl over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-5547MEDIUM Multiple cross-site request forgery (CSRF) vulnerabilities in the Search API module 7.x-1.x before 7.x-1.3 for Drupal allow remote attackers to hijack the authentication of adminis | Dec 3, 2012 | 6.8 | 21 | NO | NO |
Cross-site scripting (XSS) vulnerability in Views in the Search API (search_api) module 7.x-1.x before 7.x-1.4 for Drupal, when using certain backends and facets, allows remote att | Mar 27, 2013 | 2.6 | 14 | NO | NO |
Multiple cross-site scripting (XSS) vulnerabilities in the Search API module 7.x-1.x before 7.x-1.1 for Drupal, when supporting manual entry of field identifiers, allow remote atta | Jun 27, 2012 | 2.6 | 13 | NO | NO |
Cross-site scripting (XSS) vulnerability in the admin view in the Search API (search_api) module 7.x-1.x before 7.x-1.4 for Drupal allows remote authenticated users with certain pe | Mar 27, 2013 | 2.1 | 11 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Thomas Seidl.
Media articles that mention a CVE ID that affects a product developed by Thomas Seidl — matched by CVE ID, not by vendor name.