CVE-2018-10125: Contao

Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.

Contao before 4.5.7 has XSS in the system log.

Affected products

  • Contao Contao: from 3.0.0, up to and including 3.5.33; from 4.4.0, up to and including 4.4.16; from 4.5.0, up to and including 4.5.6; version 4.0.0 only; version 4.1.0 only; version 4.2.0 only; …

Published 2020-03-16. Last modified 2026-06-17.