Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.1 CVE-2025-56154 htmly v3.0.8 is vulnerable to Cross Site Scripting (XSS) in the /author/:name endpoint of the affected application. The name parameter is not properl… Htmly Mitigation only Fix from $1,6002025-10-02 MEDIUM 6.5 CVE-2024-34191 htmly v2.9.6 was discovered to contain an arbitrary file deletion vulnerability via the delete_post() function at admin.php. This vulnerability allow… Htmly Mitigation only Fix from $1,6002024-05-14 MEDIUM 6.1 CVE-2024-30953 A stored cross-site scripting (XSS) vulnerability in Htmly v2.9.5 allows attackers to execute arbitrary web scripts or HTML via a crafted payload inj… Htmly No fix yet Fix from $1,6002024-04-17 HIGH 8.1 CVE-2021-33354 Directory Traversal vulnerability in htmly before 2.8.1 allows remote attackers to perform arbitrary file deletions via modified file parameter. Htmly 2.8.1+ Fix from $1,9502022-09-30 HIGH 8.1 CVE-2021-40285 htmly v2.8.1 was discovered to contain an arbitrary file deletion vulnerability via the component \views\backup.html.php. Htmly Patch available Fix from $1,9502022-08-26 MEDIUM 5.4 CVE-2022-1087 A vulnerability, which was classified as problematic, has been found in htmly 5.3 whis affects the component Edit Profile Module. The manipulation of… Htmly No fix yet Fix from $1,6002022-03-29 MEDIUM 5.4 CVE-2022-25022 A cross-site scripting (XSS) vulnerability in Htmly v2.8.1 allows attackers to excute arbitrary web scripts HTML via a crafted payload in the content… Htmly No fix yet Fix from $1,6002022-03-01 MEDIUM 6.1 CVE-2021-36702 The "content" field in the "regular post" page of the "add content" menu under "dashboard" in htmly 2.8.1 has a storage cross site scripting (XSS) vu… Htmly No fix yet Fix from $1,6002021-08-03 MEDIUM 6.1 CVE-2021-36703 The "blog title" field in the "Settings" menu "config" page of "dashboard" in htmly 2.8.1 has a storage cross site scripting (XSS) vulnerability. It … Htmly No fix yet Fix from $1,6002021-08-03 CRITICAL 9.1 CVE-2021-36701 In htmly version 2.8.1, is vulnerable to an Arbitrary File Deletion on the local host when delete backup files. The vulnerability may allow a remote … Htmly No fix yet Fix from $2,3002021-08-03 MEDIUM 6.5 CVE-2020-23766 An arbitrary file deletion vulnerability was discovered on htmly v2.7.5 which allows remote attackers to use any absolute path to delete any file in … Htmly Patch available Fix from $1,6002021-05-21 MEDIUM 5.4 CVE-2021-30637 htmly 2.8.0 allows stored XSS via the blog title, Tagline, or Description to config.html.php. Htmly No fix yet Fix from $1,6002021-04-13 MEDIUM 6.1 CVE-2019-8349 Multiple cross-site scripting (XSS) vulnerabilities in HTMLy 2.7.4 allow remote attackers to inject arbitrary web script or HTML via the (1) destinat… Htmly No fix yet Fix from $1,6002019-05-08