VYPR

Speedtest

by Librespeed

Source repositories

CVEs (2)

  • CVE-2024-32890MedMay 1, 2024
    risk 0.33cvss 6.1epss 0.01

    librespeed/speedtest is an open source, self-hosted speed test for HTML5. In affected versions missing neutralization of the ISP information in a speedtest result leads to stored Cross-site scripting in the JSON API. The `processedString` field in the `ispinfo` parameter is…

  • CVE-2022-4957LowDec 3, 2023
    risk 0.00cvss 3.5epss 0.01

    A vulnerability was found in librespeed speedtest up to 5.2.4. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file results/stats.php. The manipulation of the argument id leads to cross site scripting. The attack can be…