DIYgod
9 exploits
Active since Jan 2021
RSSHub <1.0.0-master.a429472 - Server-Side Request Forgery via Arbitrary HTTP Fetch
CVSS 6.5
RSSHub <1.0.0-master.a429472 - Server-Side Request Forgery via Arbitrary HTTP Fetch
CVSS 6.5
RSSHub <1.0.0-master.a429472 - Server-Side Request Forgery via Arbitrary HTTP Fetch
CVSS 6.5
RSSHub <64e00e7 - Artifact Poisoning
CVSS 8.8
RSSHub < 2021-01-25 - Remote Code Execution via Unsafe Eval in Route Handlers
CVSS 8.6
RSSHub < 2022-06-21 - Denial of Service via Inefficient Regular Expression in Filter Parameters
CVSS 5.3
RSSHub < 2023-03-02 - Cross-Site Scripting via URL Parameter
CVSS 5.4
RSSHub 1.0.0-master.cbbd829-1.0.0-master.d8ca915 - Cross-Site Scripting via Media Proxy
CVSS 6.1
Folo - Unauthenticated Remote Code Execution via GitHub Actions pull_request_target
CVSS 9.1