depscope
Packages
IntegrateAPI DocsCuratorBenchmarkCoverage
Sign inGet API access
depscope/composer/elmsln/haxcms

elmsln/haxcms

composerv0.12.3

Headless CMS for managing and publishing hybrid static, web component driven sites.

License Apache-2.0permissive17 versions6 deps
elmsln/HAXcms
20
/ 100
Health
update required

elmsln/[email protected] has vulnerabilities — update to latest

Update to >= 11.0.0 to fix known vulnerabilities

  • Low health score (20/100)
  • 2 high severity vulnerabilities
Health breakdown0 – 100
0/25
maintenance
0/20
popularity
11/25
security
9/15
maturity
0/15
community
Vulnerabilities
4
2 high2 medium
Advisories (4)
SeverityIDSummaryFixed in
highCVE-2025-49137Hax CMS Stored Cross-Site Scripting vulnerability11.0.0
mediumCVE-2025-54139HAX CMS application pages vulnerable to clickjacking11.0.8
highCVE-2025-54378HAX CMS API Lacks Authorization Checks11.0.14
mediumCVE-2025-49138HAX CMS vulnerable to Local File Inclusion via saveOutline API Location Parameter11.0.0

Health History

Dependency Tree

License Audit

Dependencies (6)
phpguzzlehttp/guzzletwig/twigicamys/php-sitemap-generatorsymfony/filesystemgumlet/php-image-resize
API access

Get this data programmatically — free, no authentication.

curl https://depscope.dev/api/check/composer/elmsln/haxcms

Last updated · 2019-10-03T14:31:58+00:00

DepScope

Package intelligence for AI agents. 19 ecosystems.

Resources
API DocumentationHallucination BenchmarkFor EnterpriseSwagger / OpenAPIPopular PackagesCoverageAI Plugin SetupWatch the pitch (60s)
Legal
Legal hubPrivacy PolicyTerms of ServiceCookie PolicyAcceptable UseAttributionDPASub-processorsSecurityImprintContact中文
© 2026 Cuttalo srl — Italy · VAT IT03242390734Built for AI agents