Vulnerabilities > Pybbs Project

DATE CVE VULNERABILITY TITLE RISK
2022-02-14 CVE-2022-23391 Cross-site Scripting vulnerability in Pybbs Project Pybbs 6.0
A cross-site scripting (XSS) vulnerability in Pybbs v6.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload inserted into the Search box.
network
low complexity
pybbs-project CWE-79
6.1
2021-11-01 CVE-2020-28702 SQL Injection vulnerability in Pybbs Project Pybbs 5.2.1
A SQL injection vulnerability in TopicMapper.xml of PybbsCMS v5.2.1 allows attackers to access sensitive database information.
network
low complexity
pybbs-project CWE-89
7.5