packagist package report

Is genix/cms safe?

10 known vulnerabilities, worst severity CRITICAL.

cvss
9.0

how bad it is if exploited, out of 10

epss
3.1%

chance of exploitation in the next 30 days

xyz score
4.8

CyberXYZ composite, and a working exploit is published

fig. 01 — GHSA-q4hw-62mx-q37w, the advisory selected below

// advisories

GHSA-q4hw-62mx-q37w

CRITICALCVE-2015-3933

Multiple SQL injection vulnerabilities in inc/lib/User.class.php in MetalGenix GeniXCMS before 0.0.3-patch allow remote attackers to execute arbitrary SQL commands via the (1) email parameter or (2) userid parameter to register.php.

Affected
<= 0.0.3
Fixed in
not stated
Weakness
CWE-89
Published
2022-05-17
Source
github

GHSANVDMITREreferencereference


// ai model usage

Tracked for PyPI packages. HuggingFace models declare Python dependencies, so packagist packages are not covered.


Checked 2026-09-22 at 02:36 UTC. The most recent advisory here was published 2022-05-17. Updated continuously from NVD, GHSA, OSV and CNA feeds.

Think a verdict here is wrong? Tell us — we respond within 2 business days.
Is genix/cms safe? packagist package security report | CyberXYZ