Kplaylist operates a niche media-streaming application whose vulnerability surface centers on a single product and reflects a modestly represented footprint in the landscape. The observed exposure patterns cluster around sensitive information disclosure, signaling a focus area for access control and data-handling practices in the application's design.
The number and severity of CVEs published that impact products developed by Kplaylist over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2011-3750MEDIUM kPlaylist 1.8.502 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstra | Sep 23, 2011 | 5.0 | 17 | NO | NO |
CVE-2005-3841MEDIUM Cross-site scripting (XSS) vulnerability in kPlaylist 1.6 (build 400), and possibly other versions, allows remote attackers to inject arbitrary web script or HTML via the searchfor | Nov 26, 2005 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Kplaylist.
Media articles that mention a CVE ID that affects a product developed by Kplaylist — matched by CVE ID, not by vendor name.