Kayalang's vulnerability profile concentrates in its Kaya programming language and tooling, with the durable signal centered on web-generation contexts where cross-site scripting vulnerabilities arise from improper input neutralization. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Kayalang over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-6428MEDIUM The CGI framework in Kaya 0.4.0 allows remote attackers to inject arbitrary HTTP headers and conduct cross-site scripting (XSS) attacks via unspecified vectors. | Mar 6, 2009 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Kayalang.
Media articles that mention a CVE ID that affects a product developed by Kayalang — matched by CVE ID, not by vendor name.