📦 Oneblog

by Zhyd

🔍 What is Oneblog?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-60355

CRITICAL CVSS 9.8 Oct 28, 2025

CVE-2025-60355 is a critical Server-Side Template Injection (SSTI) vulnerability in zhangyd-c OneBlog that allows attackers to execute arbitrary code on affected systems. This affects all users runnin...

CVE-2025-2833

MEDIUM CVSS 5.3 Mar 27, 2025

This vulnerability in OneBlog up to version 2.3.9 allows remote attackers to cause denial of service through inefficient regular expression complexity in the HTTP header handler. Attackers can exploit...