VYPR

Linkstack

by Linkstack

Source repositories

CVEs (4)

  • CVE-2024-35451MedNov 29, 2024
    risk 0.31cvss 4.8epss 0.00

    LinkStack 2.7.9 through 4.7.7 allows resources\views\components\favicon.blade.php link SSRF.

  • CVE-2025-69904MedSep 11, 2026
    risk 0.25cvss 4.9epss 0.00

    Linkstack v4.8.4 and earlier is vulnerable to Path Traversal, which allows an administrator to read arbitrary files on the server by manipulating file path input. Successful exploitation may lead to unauthorized access to sensitive system or application files.

  • CVE-2023-5840HigOct 29, 2023
    risk 0.00cvss 8.8epss 0.01

    Weak Password Recovery Mechanism for Forgotten Password in GitHub repository linkstackorg/linkstack prior to v4.2.9.

  • CVE-2023-5838CriOct 29, 2023
    risk 0.00cvss 9.8epss 0.01

    Insufficient Session Expiration in GitHub repository linkstackorg/linkstack prior to v4.2.9.