VYPR

Open Source Social Network

by Opensource Socialnetwork

CVEs (3)

  • CVE-2025-63441HigNov 3, 2025
    risk 0.47cvss 7.3epss 0.00

    Open Source Social Network (OSSN) 8.6 is vulnerable to Cross Site Scripting (XSS) via the parameter param` at endpoint u/administrator/friends.

  • CVE-2025-63585MedNov 5, 2025
    risk 0.42cvss 6.5epss 0.00

    OSSN (Open Source Social Network) 8.6 is vulnerable to SQL Injection in /action/rtcomments/status via the timestamp parameter.

  • CVE-2020-10560MedMar 30, 2020
    risk 0.39cvss 5.9epss 0.04

    An issue was discovered in Open Source Social Network (OSSN) through 5.3. A user-controlled file path with a weak cryptographic rand() can be used to read any file with the permissions of the webserver. This can lead to further compromise. The attacker must conduct a brute-force…