Vulnerabilities
Vulnerable Software
Hexo:  >> Hexo  Security Vulnerabilities
Hexo up to v7.0.0 (RC2) was discovered to contain an arbitrary file read vulnerability.
CVSS Score
7.5
EPSS Score
0.041
Published
2023-09-08
Hexo versions 0.0.1 to 5.4.0 are vulnerable against stored XSS. The post “body” and “tags” don’t sanitize malicious javascript during web page generation. Local unprivileged attacker can inject arbitrary code.
CVSS Score
5.0
EPSS Score
0.001
Published
2021-11-30


Contact Us

Shodan ® - All rights reserved