Opensource-socialnetwork ≫ Open Source Social Network
4 Schwachstellen gefunden.
CVE-2026-41309
- EPSS 0.37%
- Veröffentlicht 24.04.2026 02:31:52
- Zuletzt bearbeitet 29.04.2026 20:56:50
Open Source Social Network (OSSN) is open-source social networking software developed in PHP. Versions prior to 9.0 are vulnerable to resource exhaustion. An attacker can upload a specially crafted image with extreme pixel dimensions (e.g., $10000 \t...
CVE-2025-63585
- EPSS 0.18%
- Veröffentlicht 05.11.2025 00:00:00
- Zuletzt bearbeitet 09.01.2026 17:30:45
OSSN (Open Source Social Network) 8.6 is vulnerable to SQL Injection in /action/rtcomments/status via the timestamp parameter.
CVE-2025-63441
- EPSS 0.24%
- Veröffentlicht 03.11.2025 00:00:00
- Zuletzt bearbeitet 04.02.2026 20:18:56
Open Source Social Network (OSSN) 8.6 is vulnerable to Cross Site Scripting (XSS) via the parameter param` at endpoint u/administrator/friends.
CVE-2020-10560
- EPSS 3.8%
- Veröffentlicht 30.03.2020 13:15:12
- Zuletzt bearbeitet 21.11.2024 04:55:34
An issue was discovered in Open Source Social Network (OSSN) through 5.3. A user-controlled file path with a weak cryptographic rand() can be used to read any file with the permissions of the webserver. This can lead to further compromise. The attack...