VYPR
and execute JavaScript code on the client side.","datePublished":"2021-05-28T21:15:08.85Z","dateModified":"2026-06-17T03:53:16.74Z","publisher":{"@type":"Organization","@id":"https://portal.vyprsec.ai#publisher","name":"VYPR","url":"https://portal.vyprsec.ai","logo":{"@type":"ImageObject","url":"https://portal.vyprsec.ai/icon.svg","width":64,"height":64},"description":"Real-time CVE intelligence newsroom — feeds, exploits, vendor advisories, and AI-synthesized insights."},"author":{"@type":"Organization","@id":"https://portal.vyprsec.ai#publisher","name":"VYPR","url":"https://portal.vyprsec.ai","logo":{"@type":"ImageObject","url":"https://portal.vyprsec.ai/icon.svg","width":64,"height":64},"description":"Real-time CVE intelligence newsroom — feeds, exploits, vendor advisories, and AI-synthesized insights."},"proficiencyLevel":"Expert","about":{"@type":"Thing","@id":"https://nvd.nist.gov/vuln/detail/CVE-2021-32616","name":"CVE-2021-32616","identifier":"CVE-2021-32616","description":"1CDN is open-source file sharing software. In 1CDN before commit f88a2730fa50fc2c2aeab09011f6f142fd90ec25, there is a basic cross-site scripting vulnerability that allows an attacker to inject / and execute JavaScript code on the client side.","additionalType":"https://schema.org/SoftwareApplication","sameAs":["https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-32616"]},"keywords":"CVE-2021-32616, High, CWE-79, Onedotprojects CDN, Onedotprojects CDN, 1cdn Project 1cdn","mentions":[{"@type":"SoftwareApplication","name":"CDN","applicationCategory":"SecurityApplication","publisher":{"@type":"Organization","name":"Onedotprojects"}},{"@type":"SoftwareApplication","name":"CDN","applicationCategory":"SecurityApplication","publisher":{"@type":"Organization","name":"Onedotprojects"}},{"@type":"SoftwareApplication","name":"1cdn","applicationCategory":"SecurityApplication","publisher":{"@type":"Organization","name":"1cdn Project"}}],"isAccessibleForFree":true},{"@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://portal.vyprsec.ai/"},{"@type":"ListItem","position":2,"name":"CVEs","item":"https://portal.vyprsec.ai/cves"},{"@type":"ListItem","position":3,"name":"CVE-2021-32616","item":"https://portal.vyprsec.ai/cves/CVE-2021-32616"}]}]}
High severity8.1NVD Advisory· Published May 28, 2021· Updated Jun 17, 2026

CVE-2021-32616

CVE-2021-32616

Description

1CDN is open-source file sharing software. In 1CDN before commit f88a2730fa50fc2c2aeab09011f6f142fd90ec25, there is a basic cross-site scripting vulnerability that allows an attacker to inject / and execute JavaScript code on the client side.

Affected products

3
  • Onedotprojects/CDNv52 versions
    < f88a2730fa50fc2c2aeab09011f6f142fd90ec25+ 1 more
    • (no CPE)range: < f88a2730fa50fc2c2aeab09011f6f142fd90ec25
    • (no CPE)range: <f88a2730fa50fc2c2aeab09011f6f142fd90ec25
  • cpe:2.3:a:1cdn_project:1cdn:*:*:*:*:*:*:*:*
    Range: <2021-05-16

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.