Askbot
by Askbot
pypi: askbot
Source repositories
CVEs (4)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2015-3169 | Med | 0.40 | 6.1 | 0.01 | Sep 7, 2017 | Cross-site scripting (XSS) vulnerability in askbot 0.7.51-4.el6.noarch. | ||
| CVE-2026-1213 | Med | 0.21 | 4.3 | 0.00 | Jan 27, 2026 | All versions of askbot before and including 0.12.2 allow an attacker authenticated with normal user permissions to modify the profile picture of other application users.This issue affects askbot: 0.12.2. | ||
| CVE-2014-2235 | 0.00 | — | 0.02 | Mar 5, 2014 | Cross-site scripting (XSS) vulnerability in Askbot before 0.7.49 allows remote attackers to inject arbitrary web script or HTML via vectors related to the question search form. | |||
| CVE-2014-2236 | 0.00 | — | 0.02 | Mar 5, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Askbot before 0.7.49 allow remote attackers to inject arbitrary web script or HTML via vectors related to the (1) tag or (2) user search forms. |
- risk 0.40cvss 6.1epss 0.01
Cross-site scripting (XSS) vulnerability in askbot 0.7.51-4.el6.noarch.
- risk 0.21cvss 4.3epss 0.00
All versions of askbot before and including 0.12.2 allow an attacker authenticated with normal user permissions to modify the profile picture of other application users.This issue affects askbot: 0.12.2.
- CVE-2014-2235Mar 5, 2014risk 0.00cvss —epss 0.02
Cross-site scripting (XSS) vulnerability in Askbot before 0.7.49 allows remote attackers to inject arbitrary web script or HTML via vectors related to the question search form.
- CVE-2014-2236Mar 5, 2014risk 0.00cvss —epss 0.02
Multiple cross-site scripting (XSS) vulnerabilities in Askbot before 0.7.49 allow remote attackers to inject arbitrary web script or HTML via vectors related to the (1) tag or (2) user search forms.