Benjaminjonard develops Koillection, a web-based personal collection-management application, with its observed vulnerability exposure centered on application-layer input and authorization handling issues including cross-site request forgery, cross-site scripting, and missing authorization controls. Current CVE counts, severity distribution, and any exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Benjaminjonard over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-9747HIGH A vulnerability has been found in Koillection up to 1.6.18. Affected is an unknown function of the file assets/controllers/csrf_protection_controller.js. Such manipulation leads to | Aug 31, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-29746MEDIUM Cross Site Scripting vulnerability in Koillection v.1.6.10 allows a remote attacker to escalate privileges via the collection, Wishlist and album components | May 7, 2025 | 6.1 | 18 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Benjaminjonard.
Media articles that mention a CVE ID that affects a product developed by Benjaminjonard — matched by CVE ID, not by vendor name.