Identityserver4.Admin is a web-based administrative interface built on the IdentityServer4 identity platform, with a narrow and focused product scope. The vulnerability profile centers on cross-site scripting risks arising from input-handling within the web interface layer. Current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Identityserver4.Admin Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-28290MEDIUM A cross-site scripting (XSS) vulnerability in Skoruba IdentityServer4.Admin before 2.0.0 via unencoded value passed to the data-secret-value parameter. | May 11, 2022 | 6.1 | 20 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Identityserver4.Admin Project.
Media articles that mention a CVE ID that affects a product developed by Identityserver4.Admin Project — matched by CVE ID, not by vendor name.