Openteknik's vulnerability profile centers on a narrowly scoped open-source social networking platform, where the observed exposure reflects fundamental web-application concerns around user input handling and file upload validation. The recurring weakness classes—cross-site scripting and unrestricted file uploads—are characteristic of social platforms where user-generated content and interaction features create parsing and validation boundaries. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Openteknik over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-34966HIGH OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain an HTML injection vulnerability via the location parameter at http://ip_address/:port/ossn/home. | Jul 25, 2022 | 7.5 | 24 | NO | NO |
CVE-2022-34965HIGH OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain an arbitrary file upload vulnerability via the component /ossn/administrator/com_installer. This v | Jul 25, 2022 | 7.2 | 23 | NO | NO |
CVE-2022-34962MEDIUM OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Group Timeline module. | Jul 25, 2022 | 5.4 | 19 | NO | NO |
CVE-2022-34963MEDIUM OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vulnerability via the News Feed module. | Jul 25, 2022 | 5.4 | 19 | NO | NO |
CVE-2022-34961MEDIUM OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Users Timeline module. | Jul 25, 2022 | 5.4 | 19 | NO | NO |
CVE-2022-34964MEDIUM OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vulnerability via the SitePages module. | Jul 25, 2022 | 4.8 | 18 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Openteknik.
Media articles that mention a CVE ID that affects a product developed by Openteknik — matched by CVE ID, not by vendor name.