Vulnerabilities (CVE)

Filtered by vendor Yourls Subscribe
Filtered by product Yourls
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-3783 1 Yourls 1 Yourls 2021-09-23 4.3 MEDIUM 6.1 MEDIUM
yourls is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-3785 1 Yourls 1 Yourls 2021-09-23 3.5 LOW 5.4 MEDIUM
yourls is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-27388 1 Yourls 1 Yourls 2020-10-28 3.5 LOW 5.4 MEDIUM
Multiple Stored Cross Site Scripting (XSS) vulnerabilities exist in the YOURLS Admin Panel, Versions 1.5 - 1.7.10. An authenticated user must modify a PHP plugin with a malicious payload and upload it, resulting in multiple stored XSS issues.