Vulnerabilities
Vulnerable Software
Halo:  >> Halo  >> 2.20.13  Security Vulnerabilities
Halo v2.20.17 and before is vulnerable to Cross Site Scripting (XSS) in /halo_host/archives/{name}.
CVSS Score
6.1
EPSS Score
0.0
Published
2025-09-09
halo v2.20.17 and before is vulnerable to server-side request forgery (SSRF) in /apis/uc.api.storage.halo.run/v1alpha1/attachments/-/upload-from-url.
CVSS Score
9.1
EPSS Score
0.0
Published
2025-09-09


Contact Us

Shodan ® - All rights reserved