rsshub vulnerabilities

Make RSS Great Again!

  • latest version

    1.0.0-master.36ffd9c

  • latest non vulnerable version

  • first published

    7 years ago

  • latest version published

    8 hours ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the rsshub package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Cross-site Scripting (XSS)

    >=1.0.0-master.cbbd829 <1.0.0-master.d8ca915
    • M
    Server-Side Request Forgery (SSRF)

    <1.0.0-master.a429472
    • M
    Cross-site Scripting (XSS)

    <1.0.0-master.c910c4d
    • H
    Server-side Request Forgery (SSRF)

    <1.0.0-master.a66cbcf
    • M
    Regular Expression Denial of Service (ReDoS)

    <1.0.0-master.5c41774
    • H
    Command Injection

    <1.0.0-master.4db1c91

    Package versions

    5440 VERSIONS IN TOTAL See all versions
    versionpublisheddirect vulnerabilities
    1.0.010 Jul, 2020
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    1.0.0-master.ffff54512 Jun, 2024
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    1.0.0-master.ffea26127 Nov, 2022
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    1.0.0-master.ffe730520 Apr, 2023
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    1.0.0-master.ffd5f2631 Mar, 2024
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    1.0.0-master.ffb476712 Sep, 2024
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    1.0.0-master.ffaca7125 Nov, 2023
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    1.0.0-master.ff9775926 Apr, 2022
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    1.0.0-master.ff83e832 May, 2025
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    1.0.0-master.ff76aa718 Oct, 2024
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L