Vulnerability index

Browse CVEs

10 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Htmly MEDIUM 6.1
CVE-2025-56154

htmly v3.0.8 is vulnerable to Cross Site Scripting (XSS) in the /author/:name endpoint of the affected application. The name parameter is not properl…

Mitigation only
Fix from $1,600 2025-10-02
Htmly MEDIUM 6.5
CVE-2024-34191

htmly v2.9.6 was discovered to contain an arbitrary file deletion vulnerability via the delete_post() function at admin.php. This vulnerability allow…

Mitigation only
Fix from $1,600 2024-05-14
Htmly MEDIUM 6.1
CVE-2024-30953

A stored cross-site scripting (XSS) vulnerability in Htmly v2.9.5 allows attackers to execute arbitrary web scripts or HTML via a crafted payload inj…

No fix yet
Fix from $1,600 2024-04-17
Htmly MEDIUM 5.4
CVE-2022-1087

A vulnerability, which was classified as problematic, has been found in htmly 5.3 whis affects the component Edit Profile Module. The manipulation of…

No fix yet
Fix from $1,600 2022-03-29
Htmly MEDIUM 5.4
CVE-2022-25022

A cross-site scripting (XSS) vulnerability in Htmly v2.8.1 allows attackers to excute arbitrary web scripts HTML via a crafted payload in the content…

No fix yet
Fix from $1,600 2022-03-01
Htmly MEDIUM 6.1
CVE-2021-36702

The "content" field in the "regular post" page of the "add content" menu under "dashboard" in htmly 2.8.1 has a storage cross site scripting (XSS) vu…

No fix yet
Fix from $1,600 2021-08-03
Htmly MEDIUM 6.1
CVE-2021-36703

The "blog title" field in the "Settings" menu "config" page of "dashboard" in htmly 2.8.1 has a storage cross site scripting (XSS) vulnerability. It …

No fix yet
Fix from $1,600 2021-08-03
Htmly CRITICAL 9.1
CVE-2021-36701

In htmly version 2.8.1, is vulnerable to an Arbitrary File Deletion on the local host when delete backup files. The vulnerability may allow a remote …

No fix yet
Fix from $2,300 2021-08-03
Htmly MEDIUM 5.4
CVE-2021-30637

htmly 2.8.0 allows stored XSS via the blog title, Tagline, or Description to config.html.php.

No fix yet
Fix from $1,600 2021-04-13
Htmly MEDIUM 6.1
CVE-2019-8349

Multiple cross-site scripting (XSS) vulnerabilities in HTMLy 2.7.4 allow remote attackers to inject arbitrary web script or HTML via the (1) destinat…

No fix yet
Fix from $1,600 2019-05-08