VendorsThmpilosany version
Vulnerabilities

Thm PILOS any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2023-47107
PILOS account takeover through password reset poisoning
Published 2023-11-08 · Modified
8.8EPSS 0.006
CVE-2025-62523
PILOS Misconfigured the Access-Control-Allow-Origin Header
Published 2025-10-27 · Analyzed
6.3EPSS 0.002
CVE-2025-62524
PILOS Exposes PHP version
Published 2025-10-27 · Analyzed
5.3EPSS 0.002
CVE-2025-62781
PILOS is missing session regeneration after password change
Published 2025-10-27 · Analyzed
5.0EPSS 0.002
CVE-2026-22800
PILOS affected by a CSRF via GET request allows unintentional termination of all active video conferences
Published 2026-01-12 · Analyzed
4.5EPSS 0.001