Skip to content
Noroxi

tt-rss records

6 published records for vendor tt-rss.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
83.3%
Median publish → KEV
No record has entered KEV

All records

6 records
  • An issue was discovered in Tiny Tiny RSS (aka tt-rss) before 2020-09-16.

    CriticalCVSS 9.8Proof of conceptEPSS 18%

    tt-rss · tiny tiny rssSep 19, 2020

  • A SQL injection in classes/handler/public.php in the forgotpass component of Tiny Tiny RSS 17.4 exists via the login parameter.

    CriticalCVSS 9.8No exploitEPSS 1%

    tt-rss · tiny tiny rssNov 20, 2017

  • An issue was discovered in Tiny Tiny RSS (aka tt-rss) before 2020-09-16.

    HighCVSS 8.1No exploitEPSS 1%

    tt-rss · tiny tiny rssSep 19, 2020

  • The auth_internal plugin in Tiny Tiny RSS (aka tt-rss) before 2021-03-12 allows an attacker to log in via the OTP code without a valid passw

    HighCVSS 7.5No exploitEPSS 1%

    tt-rss · tiny tiny rssMar 13, 2021

  • Tiny Tiny RSS before 829d478f is vulnerable to XSS window.opener attack

    MediumCVSS 6.1No exploitEPSS 1%

    tt-rss · tiny tiny rssJul 17, 2017

  • An issue was discovered in Tiny Tiny RSS (aka tt-rss) before 2020-09-16.

    MediumCVSS 6.1No exploitEPSS 1%

    tt-rss · tiny tiny rssSep 19, 2020