Mobiledetect is a PHP library for detecting mobile devices and browsers, with a narrow but widely embedded footprint in web applications and content management systems. The observed weakness in this product centers on cross-site scripting through improper neutralization of user input during web page generation, a characteristic vulnerability of user-agent parsing and device-detection workflows that handle untrusted client headers. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Mobiledetect over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-25080MEDIUM A vulnerability, which was classified as problematic, has been found in MobileDetect 2.8.31. This issue affects the function initLayoutType of the file examples/session_example.php | Feb 4, 2023 | 6.1 | 33 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Mobiledetect.
Media articles that mention a CVE ID that affects a product developed by Mobiledetect — matched by CVE ID, not by vendor name.