VYPR

genealogy

by MGeurts

Source repositories

CVEs (3)

  • CVE-2026-39355CriApr 7, 2026
    risk 0.57cvss 9.9epss 0.00

    Genealogy is a family tree PHP application. Prior to 5.9.1, a critical broken access control vulnerability in the genealogy application allows any authenticated user to transfer ownership of arbitrary non-personal teams to themselves. This enables complete takeover of other…

  • CVE-2025-55288MedAug 18, 2025
    risk 0.00cvss 5.5epss 0.00

    Genealogy is a family tree PHP application. Prior to 4.4.0, Authenticated Reflected Cross-Site Scripting (XSS) vulnerability was identified in the Genealogy application. Authenticated attackers could run arbitrary JavaScript in another user’s session, leading to session…

  • CVE-2025-55287MedAug 18, 2025
    risk 0.00cvss 5.4epss 0.00

    Genealogy is a family tree PHP application. Prior to 4.4.0, Authenticated Stored Cross-Site Scripting (XSS) vulnerability was identified in the Genealogy application. Authenticated attackers could run arbitrary JavaScript in another user’s session, leading to session…