Zibbs Project maintains a focused web application product where the recurring vulnerability signal centers on cross-site scripting and related input-handling weaknesses in web page generation. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zibbs Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-23719CRITICAL Cross site scripting (XSS) vulnerability in application/controllers/AdminController.php in xujinliang zibbs 1.0, allows attackers to execute arbitrary code via the bbsmeta paramete | Nov 2, 2021 | 9.6 | 30 | NO | NO |
CVE-2020-23718CRITICAL Cross site scripting (XSS) vulnerability in xujinliang zibbs 1.0, allows attackers to execute arbitrary code via the route parameter to index.php. | Nov 2, 2021 | 9.6 | 28 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zibbs Project.
Media articles that mention a CVE ID that affects a product developed by Zibbs Project — matched by CVE ID, not by vendor name.