Yeswiki/yeswiki
This hub aggregates every CVE we track for Yeswiki/yeswiki, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
14
CVEs tracked
3
Critical
6
High
0
In CISA KEV
Severity distribution
HIGH6MEDIUM4CRITICAL3LOW1
Monthly trend
0
1
0
0
3
0
0
8
0
0
0
0
1
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 14 most recently published vulnerabilities affecting Yeswiki/yeswiki.
- CVE-2025-52277Cross Site Scripting vulnerability in YesWiki v.4.54 allows a remote attacker to execute arbitrary code via a crafted payload to the meta configuration robots field6.1
- CVE-2025-46550Yeswiki Vulnerable to Unauthenticated Reflected Cross-site Scripting4.3
- CVE-2025-46549Yeswiki Vulnerable to Unauthenticated Reflected Cross-site Scripting4.3
- CVE-2025-46348YesWiki Vulnerable to Unauthenticated Site Backup Creation and Download10.0
- CVE-2025-46350Yeswiki Vulnerable to Authenticated Reflected Cross-site Scripting3.5
- CVE-2025-46349YesWiki Vulnerable to Unauthenticated Reflected Cross-site Scripting7.6
- CVE-2025-46347YesWiki Remote Code Execution via Arbitrary PHP File Write and Execution9.8
- CVE-2025-46346YesWiki Vulnerable to Stored XSS in Comments5.4
- CVE-2025-31131Path Traversal allowing arbitrary read of files in Yeswiki8.6
- CVE-2025-24019YesWiki vulnerable to authenticated arbitrary file deletion7.1
- CVE-2025-24018YesWiki Vulnerable to Authenticated Stored XSS7.6
- CVE-2025-24017YesWiki Vulnerable to Unauthenticated DOM Based XSS7.6
- CVE-2024-51478Use of a Broken or Risky Cryptographic Algorithm in YesWiki9.9
- CVE-2021-43091An SQL Injection vlnerability exits in Yeswiki doryphore 20211012 via the email parameter in the registration form.7.5
Product normalization is registry-driven with AI assist and human review. How it works