VendorsSlinkappslink1.5.1
Vulnerabilities

Slinkapp Slink 1.5.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2025-55944
Slink v1.4.9 allows stored cross-site scripting (XSS) via crafted SVG uploads. When a user views the shared image in a new browser tab, the embedded JavaScript executes. The issue affects both authenticated and unauthenticated users.
Published 2025-09-03 · Analyzed
6.1EPSS 0.003