📦 Owncast

by Owncast Project

🔍 What is Owncast?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-46480

CRITICAL CVSS 9.8 Nov 27, 2023

A Server-Side Request Forgery (SSRF) vulnerability in OwnCast v0.1.1 allows remote attackers to execute arbitrary code and access sensitive information via the authHost parameter in the indieauth func...

CVE-2024-29026

HIGH CVSS 8.2 Mar 20, 2024

This CVE describes a Cross-Origin Resource Sharing (CORS) misconfiguration vulnerability in Owncast versions 0.1.2 and prior. Attackers can exploit the lenient CORS policy to make cross-origin request...

CVE-2021-39183

HIGH CVSS 8.2 Dec 14, 2021

This vulnerability in Owncast allows cross-site scripting (XSS) attacks when users paste content containing inline JavaScript. Attackers can execute arbitrary scripts in victims' browsers, potentially...