Vulnerabilities (CVE)

Filtered by vendor Snipsnap Subscribe
Filtered by product Snipsnap
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-9559 1 Snipsnap 1 Snipsnap 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in SnipSnap 0.5.2a, 1.0b1, and 1.0b2 allows remote attackers to inject arbitrary web script or HTML via the query parameter to /snipsnap-search.
CVE-2004-1470 1 Snipsnap 1 Snipsnap 2024-02-04 5.0 MEDIUM N/A
CRLF injection vulnerability in SnipSnap 0.5.2a, and other versions before 1.0b1, allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server.