Kutaysec
@kutaysec
Who am I ?
BugHunter
Overview
2
total CVE
MEDIUM
2
CRITICAL
0
HIGH
0
LOW
0
NONE
0
Latest CVEs
5.5
CVSS3.0
CVE-2024-6986 - Cross-site Scripting (XSS) in parisneo/lollms-webui
A Cross-site Scripting (XSS) vulnerability exists in the Settings page of parisneo/lollms-webui version 9.8. The vulnerability is due to the improper use of the 'v-html' directive, which inserts the content of the 'full_template' variable directly as HTML. This allows an attacker to execute malicioβ¦
π
Published: March 20, 2025, 10:10 a.m.
π Last Modified: March 20, 2025, 6:18 p.m.
6.1
CVSS3.1
CVE-2021-42245 -
FlatCore-CMS 2.0.9 has a cross-site scripting (XSS) vulnerability in pages.edit.php through meta tags and content sections.
π
Published: June 6, 2022, 11:05 a.m.
π Last Modified: Nov. 21, 2024, 6:27 a.m.