Vulnerabilities > CVE-2019-14537 - Type Confusion vulnerability in Yourls 1.7/1.7.3

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
yourls
CWE-843

Summary

YOURLS through 1.7.3 is affected by a type juggling vulnerability in the api component that can result in login bypass.

Vulnerable Configurations

Part Description Count
Application
Yourls
2