Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Alvaro Diaz

#52049de 53,635
4.3CVSS total
Vulnerabilidades · 1
PT-2014-8555
4.3
2014-12-10
Yourls · Yourls · CVE-2014-8488
**Name of the Vulnerable Software and Affected Versions** Yourls version 1.7 **Description** A cross-site scripting (XSS) issue exists in the administrator panel, specifically in the Shorten functionality, allowing remote attackers to inject arbitrary web script or HTML via a specially crafted URL. **Recommendations** For version 1.7, update to a newer version that contains a fix for this issue.