Lucene search

K

Changedetection Security Vulnerabilities

cve
cve

CVE-2024-23329

changedetection.io is an open source tool designed to monitor websites for content changes. In affected versions the API endpoint /api/v1/watch/<uuid>/history can be accessed by any unauthorized user. As a result any unauthorized user can check one's watch history. However, because unauthoriz...

3.7CVSS

4AI Score

0.0005EPSS

2024-01-19 08:15 PM
83
cve
cve

CVE-2023-24769

Changedetection.io before v0.40.1.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the main page. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the URL parameter under the "Add a new change detection....

5.4CVSS

5.2AI Score

0.001EPSS

2023-02-17 10:15 PM
21