Vulnerabilities > Simple Social Networking Site Project > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-05-24 CVE-2022-30460 Cross-site Scripting vulnerability in Simple Social Networking Site Project Simple Social Networking Site 1.0
Simple Social Networking Site v1.0 is vulnerable to Cross Site Scripting (XSS) via /sns/classes/Users.php?f=save, firstname.
5.4
2022-05-13 CVE-2022-30375 Incorrect Default Permissions vulnerability in Simple Social Networking Site Project Simple Social Networking Site 1.0
Sourcecodester Simple Social Networking Site v1.0 is vulnerable to file deletion via /sns/classes/Master.php?f=delete_img.
6.5