CVE-2017-20174

Source
https://cve.org/CVERecord?id=CVE-2017-20174
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-20174.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2017-20174
Published
2023-01-19T08:15:12.620Z
Modified
2026-03-14T09:22:48.013141Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

A vulnerability was found in bastianallgeier Kirby Webmentions Plugin and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to injection. The attack may be launched remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The patch is identified as 55bedea78ae9af916a9a41497bd9996417851502. It is recommended to apply a patch to fix this issue. VDB-218894 is the identifier assigned to this vulnerability.

References

Affected packages

Git / github.com/bastianallgeier/kirby-webmentions

Affected ranges

Type
GIT
Repo
https://github.com/bastianallgeier/kirby-webmentions
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Type
GIT
Repo
https://github.com/bastianallgeier/kirby-webmentions
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Database specific

unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "fixed": "2017-02-01"
            }
        ]
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-20174.json"