Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Oroinc

13 known vulnerabilities

2
HIGH
11
MEDIUM

Top Products

oroplatform 7 orocommerce 4 client relationship management 2
13 CVEs
6.1
CVE-2024-50677

A cross-site scripting (XSS) vulnerability in OroPlatform CMS v5.1 allows attackers to execute arbitrary web scripts or

4.3
CVE-2023-48296

OroPlatform is a PHP Business Application Platform (BAP). Navigation history, most viewed and favorite navigation items

4.3
CVE-2023-45824

OroPlatform is a PHP Business Application Platform (BAP). A logged in user can access page state data of pinned pages o

5.8
CVE-2023-32065

OroCommerce is an open-source Business to Business Commerce application built with flexibility in mind. Detailed Order t

5.0
CVE-2023-32064

OroCommerce package with customer portal and non authenticated visitor website base features. Back-office users can acce

5.0
CVE-2023-32063

OroCalendarBundle enables a Calendar feature and related functionality in Oro applications. Back-office users can access

5.0
CVE-2023-32062

OroPlatform is a package that assists system and user calendar management. Back-office users can access information from

8.5
CVE-2022-41951

OroPlatform is a PHP Business Application Platform (BAP) designed to make development of custom business applications ea

6.9
CVE-2022-35950

OroCommerce is an open-source Business to Business Commerce application. In versions 4.1.0 through 4.1.13, 4.2.0 through

6.9
CVE-2022-31037

OroCommerce is an open-source Business to Business Commerce application. Versions between 4.1.0 and 4.1.17 inclusive, 4.

8.8
CVE-2021-43852

OroPlatform is a PHP Business Application Platform. In affected versions by sending a specially crafted request, an atta

6.9
CVE-2021-41236

OroPlatform is a PHP Business Application Platform. In affected versions the email template preview is vulnerable to XSS

4.2
CVE-2021-39198

OroCRM is an open source Client Relationship Management (CRM) application. Affected versions we found to suffer from a v

Frequently Asked Questions

How many CVEs affect Oroinc?

Oroinc has 13 CVE records in our database, including 0 critical and 2 high severity vulnerabilities.

What are the most severe Oroinc vulnerabilities?

Oroinc has 0 critical severity (CVSS 9.0+) and 2 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.

How can I scan for Oroinc vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Oroinc products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Oroinc Vulnerabilities

CyberStrike scans your infrastructure for Oroinc vulnerabilities and provides real-time remediation guidance.

Get Started