Serendipity (S9Y) Freetag EventSerendipity before 0.8 allows Chief users to "hide plugins installed by other users."

First published (updated )

Serendipity (S9Y) Freetag EventUnknown vulnerability in serendipity_config_local.inc.php for Serendipity before 0.8 has unknown imp…

First published (updated )

debian/dotlrnMalicious File Upload, XSS

First published (updated )

Serendipity (S9Y) Freetag Eventinclude/functions_installer.inc.php in Serendipity through 2.0.5 is vulnerable to File Inclusion and…

First published (updated )

Serendipity (S9Y) Freetag EventMalicious File Upload

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Serendipity (S9Y) Freetag EventMalicious File Upload

First published (updated )

Serendipity (S9Y) Freetag EventCSRF

8.8
First published (updated )

Serendipity (S9Y) Freetag EventSQL Injection

8.8
First published (updated )

Serendipity (S9Y) Freetag EventCSRF

8.8
First published (updated )

Serendipity (S9Y) Freetag EventCSRF

8.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Serendipity (S9Y) Freetag EventMalicious File Upload

8.8
First published (updated )

Serendipity (S9Y) Freetag EventSSRF

8.6
First published (updated )

Serendipity (S9Y) Freetag EventSQL Injection

7.5
First published (updated )

Serendipity (S9Y) Freetag EventUnknown vulnerability in "the function used to validate path-names for uploading media" in Serendipi…

7.5
First published (updated )

Serendipity (S9Y) Freetag EventThe media manager in Serendipity before 0.8 allows remote attackers to upload and execute arbitrary …

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Serendipity (S9Y) Freetag EventSQL Injection

7.5
First published (updated )

Serendipity (S9Y) Freetag Eventconfig.php in S9Y Serendipity 1.0 beta 2 allows remote attackers to inject arbitrary PHP code by edi…

7.5
First published (updated )

Serendipity (S9Y) Freetag EventCSRF

7.5
First published (updated )

Serendipity (S9Y) Freetag EventSQL Injection

7.5
First published (updated )

Serendipity (S9Y) Freetag EventSQL Injection, CSRF

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Serendipity (S9Y) Freetag EventThe dynamic configuration feature in Xinha WYSIWYG editor 0.96 Beta 2 and earlier, as used in Serend…

7.5
First published (updated )

Serendipity (S9Y) Freetag EventSQL Injection

7.5
First published (updated )

Serendipity (S9Y) Freetag EventSQL Injection

7.5
First published (updated )

Serendipity (S9Y) Freetag EventXSS

First published (updated )

Serendipity (S9Y) Freetag EventPath Traversal

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Serendipity (S9Y) Freetag EventMultiple incomplete blacklist vulnerabilities in the serendipity_isActiveFile function in include/fu…

First published (updated )

debian/dotlrnXSS

First published (updated )

debian/dotlrnXSS

First published (updated )

Serendipity (S9Y) Freetag EventXSS

First published (updated )

debian/serendipityXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203