📦 Friendica

by Friendica

🔍 What is Friendica?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-27730

CRITICAL CVSS 9.8 Aug 15, 2024

This vulnerability allows remote attackers to bypass authorization checks in Friendica's calendar event feature, potentially accessing sensitive information and executing arbitrary code. All Friendica...

CVE-2021-30141

HIGH CVSS 7.5 Apr 5, 2021

CVE-2021-30141 is an authentication bypass vulnerability in Friendica's user export feature that allows anonymous users to access sensitive functionality. This can lead to excessive memory consumption...

CVE-2024-39094

MEDIUM CVSS 5.4 Aug 20, 2024

Friendica 2024.03 contains a cross-site scripting vulnerability in profile settings fields that allows attackers to inject malicious scripts. This affects all users who can access profile settings, po...

CVE-2024-27728

MEDIUM CVSS 6.1 Aug 15, 2024

This Cross-Site Scripting (XSS) vulnerability in Friendica's babel debug feature allows remote attackers to inject malicious scripts via the text parameter. When exploited, this can lead to session hi...