Zhenfeng13 My-blog Project

Zhenfeng13 My-blog

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.45%
  • Published 01.05.2023 16:15:11
  • Last modified 30.01.2025 17:15:14

Cross site scripting (XSS) vulnerability in ZHENFENG13 My-Blog, allows attackers to inject arbitrary web script or HTML via the "title" field in the "blog management" page due to the the default configuration not using MyBlogUtils.cleanString.

Exploit
  • EPSS 0.42%
  • Published 01.05.2023 16:15:11
  • Last modified 30.01.2025 19:15:11

Cross site scripting (XSS) vulnerability in ZHENFENG13 My-Blog, allows attackers to inject arbitrary web script or HTML via editing an article in the "blog article" page due to the default configuration not utilizing MyBlogUtils.cleanString.