Vulnerabilities > CVE-2019-14537 - Type Confusion vulnerability in Yourls

047910
CVSS 9.8 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
yourls
CWE-843
critical

Summary

YOURLS through 1.7.3 is affected by a type juggling vulnerability in the api component that can result in login bypass.