VendorsThinkphp-bjyblog Projectthinkphp-bjyblogall versions
Vulnerabilities

Thinkphp-bjyblog Project Thinkphp-bjyblog

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2021-43682
thinkphp-bjyblog (last update Jun 4 2021) is affected by a Cross Site Scripting (XSS) vulnerability in AdminBaseController.class.php. The exit function terminates the script and prints a message to the user that contains $_SERVER['HTTP_HOST'].
Published 2021-12-02 · Modified
6.1EPSS 0.006