Known Vulnerabilities for Blog Mini by Blog Mini Project
Listed below are 3 of the newest known vulnerabilities associated with "Blog Mini" by "Blog Mini Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-18999 json | Cross Site Scripting (XSS) in Blog_mini v1.0 allows remote attackers to execute arbitrary code via the component '/admin/subm... | 6.1 - MEDIUM | 2021-08-27 | 2021-09-01 |
| CVE-2020-18998 json | Cross Site Scripting (XSS) in Blog_mini v1.0 allows remote attackers to execute arbitrary code via the component '/admin/cust... | 6.1 - MEDIUM | 2021-08-27 | 2021-09-01 |
| CVE-2019-9765 json | In Blog_mini 1.0, XSS exists via the author name of a comment reply in the app/main/views.py articleDetails() function, relat... | 6.1 - MEDIUM | 2019-03-14 | 2019-03-14 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Blog Mini Project | Blog Mini | 1.0 |