VYPR

Linkding

by Sissbruecker

Source repositories

CVEs (2)

  • CVE-2025-14202HigDec 18, 2025
    risk 0.53cvss epss 0.00

    A vulnerability in the file upload at bookmark + asset rendering pipeline allows an attacker to upload a malicious SVG file with JavaScript content. When an authenticated admin user views the SVG file with embedded JavaScript code of shared bookmark, JavaScript executes in the…

  • CVE-2023-6646LowDec 9, 2023
    risk 0.23cvss 3.5epss 0.01

    A vulnerability classified as problematic has been found in linkding 1.23.0. Affected is an unknown function. The manipulation of the argument q leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be…