advplyr
8 exploits
Active since Dec 2023
audiobookshelf < 2.10.0 - Stored Cross-Site Scripting via Malicious Ebook Content
CVSS 4.8
Audiobookshelf <2.32.0 - Stored XSS
CVSS 4.8
audiobookshelf < 2.12.0 - Stored Cross-Site Scripting via Library Metadata
CVSS 4.0
audiobookshelf_mobile_app < 0.12.0 - Cross-Site Scripting via Malicious Library Metadata
CVSS 4.8
audiobookshelf < 2.7.0 - Unauthenticated Server-Side Request Forgery in Auth.js
CVSS 4.3
audiobookshelf < 2.7.0 - Unauthenticated Server-Side Request Forgery in podcastUtils.js
CVSS 4.3
audiobookshelf < 2.21.0 - Reflected Cross-Site Scripting via API Upload Endpoint
CVSS 6.1
Audiobookshelf <2.26.3 - Open Redirect
CVSS 8.8