VYPR
Medium severity6.1NVD Advisory· Published Dec 15, 2021· Updated Jun 17, 2026

CVE-2021-43675

CVE-2021-43675

Description

Lychee-v3 3.2.16 is affected by a Cross Site Scripting (XSS) vulnerability in php/Access/Guest.php. The function exit will terminate the script and print the message to the user. The message will contain albumID which is controlled by the user.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Lycheeorg/Lychee2 versions
    cpe:2.3:a:lycheeorg:lychee:3.2.16:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:lycheeorg:lychee:3.2.16:*:*:*:*:*:*:*
    • (no CPE)range: =3.2.16
  • Lychee-v3/Lychee-v3description

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.