Processmaker
5 known vulnerabilities
Top Products
ProcessMaker before v3.5.4 was discovered to contain insecure permissions in the user profile page. This vulnerability a
SQL injection vulnerability exists in the handling of sort parameters in ProcessMaker 3.4.11. A specially crafted HTTP r
The sort parameter in the download page /sysworkflow/en/neoclassic/reportTables/reportTables_Ajax is vulnerable to SQL i
A code execution vulnerability exists in ProcessMaker Enterprise Core 3.0.1.7-community. A specially crafted web request
Multiple exploitable SQL Injection vulnerabilities exists in ProcessMaker Enterprise Core 3.0.1.7-community. Specially c
Frequently Asked Questions
How many CVEs affect Processmaker?
Processmaker has 5 CVE records in our database, including 0 critical and 5 high severity vulnerabilities.
What are the most severe Processmaker vulnerabilities?
Processmaker has 0 critical severity (CVSS 9.0+) and 5 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Processmaker vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Processmaker products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Processmaker Vulnerabilities
CyberStrike scans your infrastructure for Processmaker vulnerabilities and provides real-time remediation guidance.
Get Started