Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
yahoo yui 2.8.1 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2013-6780
Cross-site scripting (XSS) vulnerability in uploader.swf in the Uploader component in Yahoo! YUI 2.5.0 up to and including 2.9.0 allows remote malicious users to inject arbitrary web script or HTML via the allowedDomain parameter.
Yahoo Yui 2.5.2
Yahoo Yui 2.7.0
Yahoo Yui 2.5.1
Yahoo Yui 2.8.0
Yahoo Yui 2.5.0
Yahoo Yui 2.9.0
Yahoo Yui 2.8.2
Yahoo Yui 2.8.1
Yahoo Yui 2.6.0
4.3
CVSSv2
CVE-2012-5881
Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.4.0 up to and including 2.9.0 allows remote malicious users to inject arbitrary web script or HTML via vectors related to charts.swf, a similar issue to CVE-2010-4207.
Yahoo Yui 2.4.1
Yahoo Yui 2.5.2
Yahoo Yui 2.7.0
Yahoo Yui 2.9.0
Yahoo Yui 2.5.1
Yahoo Yui 2.4.0
Yahoo Yui 2.8.0
Yahoo Yui 2.5.0
Yahoo Yui 2.8.2
Yahoo Yui 2.8.1
Yahoo Yui 2.6.0
4.3
CVSSv2
CVE-2012-5882
Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.5.0 up to and including 2.9.0 allows remote malicious users to inject arbitrary web script or HTML via vectors related to uploader.swf, a similar issue to CVE-2010-4208.
Yahoo Yui 2.4.1
Yahoo Yui 2.5.2
Yahoo Yui 2.7.0
Yahoo Yui 2.9.0
Yahoo Yui 2.5.1
Yahoo Yui 2.4.0
Yahoo Yui 2.8.0
Yahoo Yui 2.5.0
Yahoo Yui 2.8.2
Yahoo Yui 2.8.1
Yahoo Yui 2.6.0
4.3
CVSSv2
CVE-2012-5883
Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.8.0 up to and including 2.9.0, as used in Bugzilla 3.7.x and 4.0.x prior to 4.0.9, 4.1.x and 4.2.x prior to 4.2.4, and 4.3.x and 4.4.x prior to 4.4rc1, allows remote malicious users to inject ...
Mozilla Bugzilla 4.1.1
Mozilla Bugzilla 4.3.1
Mozilla Bugzilla 3.7.2
Mozilla Bugzilla 4.3.2
Mozilla Bugzilla 4.2
Mozilla Bugzilla 3.7.1
Mozilla Bugzilla 3.7
Mozilla Bugzilla 4.2.1
Mozilla Bugzilla 4.0.1
Yahoo Yui 2.9.0
Mozilla Bugzilla 4.0
Mozilla Bugzilla 4.3
Mozilla Bugzilla 4.1
Mozilla Bugzilla 4.0.2
Mozilla Bugzilla 4.3.3
Mozilla Bugzilla 4.2.2
Mozilla Bugzilla 4.0.5
Mozilla Bugzilla 4.0.7
Mozilla Bugzilla 4.1.2
Mozilla Bugzilla 4.0.8
Yahoo Yui 2.8.0
Mozilla Bugzilla 3.7.3
4.3
CVSSv2
CVE-2010-4710
Cross-site scripting (XSS) vulnerability in the addItem method in the Menu widget in YUI prior to 2.9.0 allows remote malicious users to inject arbitrary web script or HTML via a field that is added to a menu, related to documentation that specifies this field as a text field rat...
Yahoo Yui 2.4.1
Yahoo Yui 2.5.2
Yahoo Yui 2.7.0
Yahoo Yui 2.3.1
Yahoo Yui 2.2.2
Yahoo Yui 2.2.0
Yahoo Yui 2.5.1
Yahoo Yui 2.4.0
Yahoo Yui 2.8.0
Yahoo Yui
Yahoo Yui 2.5.0
Yahoo Yui 2.8.1
Yahoo Yui 2.6.0
Yahoo Yui 2.3.0
4.3
CVSSv2
CVE-2010-4208
Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.5.0 up to and including 2.8.1, as used in Bugzilla, Moodle, and other products, allows remote malicious users to inject arbitrary web script or HTML via vectors related to uploader/assets/uplo...
Yahoo Yui 2.5.0
Yahoo Yui 2.5.1
Yahoo Yui 2.5.2
Yahoo Yui 2.6.0
Yahoo Yui 2.7.0
Yahoo Yui 2.8.0
Yahoo Yui 2.8.1
4.3
CVSSv2
CVE-2010-4209
Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.8.0 up to and including 2.8.1, as used in Bugzilla 3.7.1 up to and including 3.7.3 and 4.1, allows remote malicious users to inject arbitrary web script or HTML via vectors related to swfstore...
Yahoo Yui 2.8.0
Yahoo Yui 2.8.1
4.3
CVSSv2
CVE-2010-4207
Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.4.0 up to and including 2.8.1, as used in Bugzilla, Moodle, and other products, allows remote malicious users to inject arbitrary web script or HTML via vectors related to charts/assets/charts...
Yahoo Yui 2.4.0
Yahoo Yui 2.5.0
Yahoo Yui 2.5.1
Yahoo Yui 2.5.2
Yahoo Yui 2.6.0
Yahoo Yui 2.7.0
Yahoo Yui 2.8.0
Yahoo Yui 2.8.1
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
SSRF
server-side request forgery
CVE-2024-30067
CVE-2024-5553
CVE-2024-30095
IDOR
CVE-2024-35252
CVE-2024-23692
CVE-2024-27801
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started