Koha
7 known vulnerabilities
Top Products
A stored cross-site scripting (XSS) vulnerability in the item type administration page of Koha Library Management System
A stored cross-site scripting (XSS) vulnerability in the OPAC item detail page of Koha Library Management System 0 throu
A stored cross-site scripting (XSS) vulnerability in the patron restriction type administration page of Koha Library Man
Koha versions up to 25.11 contain a Server-Side Request Forgery (SSRF) vulnerability via the Z39.50/SRU server configura
Cross Site Scripting vulnerability in Koha 25.11 and before allows a remote attacker to execute arbitrary code via file
An authenticated SQL Injection vulnerability (CWE-89) exists in the Koha staff interface in the /cgi-bin/koha/suggestion
Cross Site Scripting vulnerability in Koha 25.11 and before allows a remote attacker to execute arbitrary code via the N
Frequently Asked Questions
How many CVEs affect Koha?
Koha has 7 CVE records in our database, including 0 critical and 1 high severity vulnerabilities.
What are the most severe Koha vulnerabilities?
Koha has 0 critical severity (CVSS 9.0+) and 1 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Koha vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Koha products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Koha Vulnerabilities
CyberStrike scans your infrastructure for Koha vulnerabilities and provides real-time remediation guidance.
Get Started