rsshub@1.0.0-master.af2592b vulnerabilities

Make RSS Great Again!

  • latest version

    1.0.0-master.d2d4955

  • latest non vulnerable version

  • first published

    7 years ago

  • latest version published

    2 hours ago

  • licenses detected

    • >=1.0.0-master.02826c6 <1.0.0-master.02963d1; >=1.0.0-master.05437e4 <1.0.0-master.055de86; >=1.0.0-master.06858d2 <1.0.0-master.06a995b; >=1.0.0-master.07cd821 <1.0.0-master.07f728b; >=1.0.0-master.085a0ea <1.0.0-master.08602c7; >=1.0.0-master.09a2886 <1.0.0-master.09bfe77; >=1.0.0-master.0ac1e40 <1.0.0-master.0acae72; >=1.0.0-master.0b056eb <1.0.0-master.0b32e8f; >=1.0.0-master.0b51e05 <1.0.0-master.0b544e1; >=1.0.0-master.0db4c9c <1.0.0-master.0dc0f0a; >=1.0.0-master.0e48234 <1.0.0-master.0e60901; >=1.0.0-master.12e5f3e <1.0.0-master.12ecf43; >=1.0.0-master.12eece4 <1.0.0-master.12f3eff; >=1.0.0-master.144d60b <1.0.0-master.145ad51; >=1.0.0-master.1520f4f <1.0.0-master.152744d; >=1.0.0-master.1851236 <1.0.0-master.1886554; >=1.0.0-master.18548f8 <1.0.0-master.18596a3; >=1.0.0-master.18c78d5 <1.0.0-master.18ca909; >=1.0.0-master.1acb805 <1.0.0-master.1acceff; >=1.0.0-master.1c5e4b3 <1.0.0-master.1c60331; >=1.0.0-master.1db6d77 <1.0.0-master.1dbdea6; >=1.0.0-master.1f3b11c <1.0.0-master.1f619e4; >=1.0.0-master.2079d36 <1.0.0-master.2085c2c; >=1.0.0-master.242bba6 <1.0.0-master.2450ebe; >=1.0.0-master.25cd9f1 <1.0.0-master.25d53e8; >=1.0.0-master.27869d9 <1.0.0-master.2789ed9; >=1.0.0-master.2e756e0 <1.0.0-master.2e7d9ff; >=1.0.0-master.2f6303f <1.0.0-master.2f66267; >=1.0.0-master.2f9d18c <1.0.0-master.2f9e7fa; >=1.0.0-master.3046b6c <1.0.0-master.304c84a; >=1.0.0-master.3349076 <1.0.0-master.3367005; >=1.0.0-master.3583fba <1.0.0-master.3597ee6; >=1.0.0-master.3813afa <1.0.0-master.38363ce; >=1.0.0-master.3e32ff2 <1.0.0-master.3e3657c; >=1.0.0-master.3ecf9ee <1.0.0-master.3edf239; >=1.0.0-master.3ef0136 <1.0.0-master.3efdea9; >=1.0.0-master.3f7f584 <1.0.0-master.3f82eed; >=1.0.0-master.3feaff8 <1.0.0-master.3ff3cef; >=1.0.0-master.4047e34 <1.0.0-master.404b861; >=1.0.0-master.417b943 <1.0.0-master.418e68a; >=1.0.0-master.45cf28a <1.0.0-master.45d23f8; >=1.0.0-master.472082e <1.0.0-master.473c2f4; >=1.0.0-master.48d6b1a <1.0.0-master.48ee493; >=1.0.0-master.49679f6 <1.0.0-master.49685ad; >=1.0.0-master.4b6c445 <1.0.0-master.4b77c3d; >=1.0.0-master.4b9ef7b <1.0.0-master.4ba85ef; >=1.0.0-master.4c4339c <1.0.0-master.4c4b98e; >=1.0.0-master.4c4cbba <1.0.0-master.4c4d30a; >=1.0.0-master.4c7e027 <1.0.0-master.4c7e9af; >=1.0.0-master.4dbd320 <1.0.0-master.4dbd8f0; >=1.0.0-master.4dc4c16 <1.0.0-master.4dc5ae9; >=1.0.0-master.4dec5ee <1.0.0-master.4df468d; >=1.0.0-master.5417ec7 <1.0.0-master.541cae4; >=1.0.0-master.5469b02 <1.0.0-master.54722cd; >=1.0.0-master.55ca8bb <1.0.0-master.55cbde4; >=1.0.0-master.5634303 <1.0.0-master.5653214; >=1.0.0-master.5ad50d3 <1.0.0-master.5adb4a4; >=1.0.0-master.5ae169a <1.0.0-master.5ae2913; >=1.0.0-master.5b144a6 <1.0.0-master.5b18604; >=1.0.0-master.5c416b8 <1.0.0-master.5c41774; >=1.0.0-master.5caccab <1.0.0-master.5cb3437; >=1.0.0-master.5ddd208 <1.0.0-master.5de0928; >=1.0.0-master.626d289 <1.0.0-master.627a848; >=1.0.0-master.671f05e <1.0.0-master.673a225; >=1.0.0-master.685598f <1.0.0-master.6861a9b; >=1.0.0-master.69d022c <1.0.0-master.69dcb7e; >=1.0.0-master.6b38e2c <1.0.0-master.6b3af0b; >=1.0.0-master.6bd478f <1.0.0-master.6bd881c; >=1.0.0-master.6dba3aa <1.0.0-master.6dbd99b; >=1.0.0-master.6e16f90 <1.0.0-master.6e202ac; >=1.0.0-master.6e2ca63 <1.0.0-master.6e3b368; >=1.0.0-master.70576d0 <1.0.0-master.705ea99; >=1.0.0-master.71d5ded <1.0.0-master.71e1d2b; >=1.0.0-master.7465feb <1.0.0-master.746dc11; >=1.0.0-master.7785a7b <1.0.0-master.77acba5; >=1.0.0-master.77b7763 <1.0.0-master.77bf780; >=1.0.0-master.79c8adc <1.0.0-master.79cd6c0; >=1.0.0-master.7ae15a8 <1.0.0-master.7afd868; >=1.0.0-master.7b92b63 <1.0.0-master.7b9fd58; >=1.0.0-master.7c5c66a <1.0.0-master.7c76f38; >=1.0.0-master.7d2bd7c <1.0.0-master.7d3e56d; >=1.0.0-master.7ec4876 <1.0.0-master.7ed0ed6; >=1.0.0-master.803c6fc <1.0.0-master.804a4ab; >=1.0.0-master.81ff849 <1.0.0-master.821d2ca; >=1.0.0-master.8225bb1 <1.0.0-master.823602e; >=1.0.0-master.829d7f0 <1.0.0-master.82a036d; >=1.0.0-master.8388a4d <1.0.0-master.839d3ea; >=1.0.0-master.844592 <1.0.0-master.1229922; >=1.0.0-master.85b5444 <1.0.0-master.85c40f9; >=1.0.0-master.8637e63 <1.0.0-master.864016c; >=1.0.0-master.86a0015 <1.0.0-master.86b3aef; >=1.0.0-master.895672f <1.0.0-master.8958d30; >=1.0.0-master.8bb3d6f <1.0.0-master.8bd8c2d; >=1.0.0-master.8be0938 <1.0.0-master.8befd48; >=1.0.0-master.8bf78f5 <1.0.0-master.8c04586; >=1.0.0-master.8ce0771 <1.0.0-master.8cf0a2a; >=1.0.0-master.8d8a435 <1.0.0-master.8d93353; >=1.0.0-master.8df1da9 <1.0.0-master.8dfd93e; >=1.0.0-master.8f4392d <1.0.0-master.8f4c50e; >=1.0.0-master.91ff6e2 <1.0.0-master.920d1a9; >=1.0.0-master.9497007 <1.0.0-master.9498669; >=1.0.0-master.976b47b <1.0.0-master.9779ac0; >=1.0.0-master.982193c <1.0.0-master.982b141; >=1.0.0-master.9aa55f5 <1.0.0-master.9ae2cbf; >=1.0.0-master.9ae9d53 <1.0.0-master.9af1349; >=1.0.0-master.9cb2951 <1.0.0-master.9cb8d50; >=1.0.0-master.a1d2668 <1.0.0-master.a1d8565; >=1.0.0-master.a4db4c2 <1.0.0-master.a4e0dfe; >=1.0.0-master.a56e629 <1.0.0-master.a581fdd; >=1.0.0-master.ac1a023 <1.0.0-master.ac337c1; >=1.0.0-master.ad3acba <1.0.0-master.ad3ba03; >=1.0.0-master.af2592b <1.0.0-master.af371a2; >=1.0.0-master.af886e3 <1.0.0-master.afa85c6; >=1.0.0-master.b058ba1 <1.0.0-master.b08045c; >=1.0.0-master.b11b9e7 <1.0.0-master.b124b70; >=1.0.0-master.b173c13 <1.0.0-master.b175d5e; >=1.0.0-master.b22fdd8 <1.0.0-master.b23bb63; >=1.0.0-master.b55864e <1.0.0-master.b55baa0; >=1.0.0-master.b6660ed <1.0.0-master.b676ae5; >=1.0.0-master.b832b97 <1.0.0-master.b833a21; >=1.0.0-master.b84bb92 <1.0.0-master.b857abc; >=1.0.0-master.ba0f1ad <1.0.0-master.ba1824b; >=1.0.0-master.bb1d219 <1.0.0-master.bb31fb6; >=1.0.0-master.bb98fff <1.0.0-master.bb9c804; >=1.0.0-master.bcba35b <1.0.0-master.bcbc7a8; >=1.0.0-master.bef22f9 <1.0.0-master.bf0a061; >=1.0.0-master.c09daca <1.0.0-master.c0a7b55; >=1.0.0-master.c135b8d <1.0.0-master.c13ae21; >=1.0.0-master.c21c82f <1.0.0-master.c22b0c1; >=1.0.0-master.c8be7b6 <1.0.0-master.c8e4273; >=1.0.0-master.c90e71c <1.0.0-master.c910c4d; >=1.0.0-master.cf4e772 <1.0.0-master.cf4f2d2; >=1.0.0-master.d12fa2e <1.0.0-master.d13f043; >=1.0.0-master.d40f812 <1.0.0-master.d424adf; >=1.0.0-master.d59c3ee <1.0.0-master.d5a952a; >=1.0.0-master.d6422d8 <1.0.0-master.d647875; >=1.0.0-master.d648da5 <1.0.0-master.d64c762; >=1.0.0-master.d6a665b <1.0.0-master.d6a7f6d; >=1.0.0-master.d9a611a <1.0.0-master.d9ca0d0; >=1.0.0-master.da15d11 <1.0.0-master.da1d3c0; >=1.0.0-master.dc68ecb <1.0.0-master.dc69f68; >=1.0.0-master.dcbe25b <1.0.0-master.dccf9a0; >=1.0.0-master.dd5e1ff <1.0.0-master.dd7382a; >=1.0.0-master.df6572b <1.0.0-master.df6f4ca; >=1.0.0-master.e2c991a <1.0.0-master.e2ca9b8; >=1.0.0-master.e43f570 <1.0.0-master.e44064d; >=1.0.0-master.e5016e8 <1.0.0-master.e50b2c6; >=1.0.0-master.e6598a0 <1.0.0-master.e66df70; >=1.0.0-master.e935df5 <1.0.0-master.e942224; >=1.0.0-master.e9e8cb0 <1.0.0-master.e9eebb1; >=1.0.0-master.ea2fefd <1.0.0-master.ea304a3; >=1.0.0-master.ebd2283 <1.0.0-master.ebff15c; >=1.0.0-master.ee161b7 <1.0.0-master.ee1eab2; >=1.0.0-master.eee59e4 <1.0.0-master.ef27ac2; >=1.0.0-master.f1164b5 <1.0.0-master.f11b575; >=1.0.0-master.f30f27b <1.0.0-master.f31071c; >=1.0.0-master.f4130d4 <1.0.0-master.f41abed; >=1.0.0-master.f733a03 <1.0.0-master.f7347d9; >=1.0.0-master.f7bea67 <1.0.0-master.f7bfacc; >=1.0.0-master.f9c5068 <1.0.0-master.f9c5ccb; >=1.0.0-master.fb07a7f <1.0.0-master.fb0b142; >=1.0.0-master.fbe69a7 <1.0.0-master.fc015b9; >=1.0.0-master.fc5d346 <1.0.0-master.fc648b5; >=1.0.0-master.ff4ae56 <1.0.0-master.ff76aa7; >=1.0.0-master.ffb226c <1.0.0-master.ffb4767
  • Direct Vulnerabilities

    Known vulnerabilities in the rsshub package. This does not include vulnerabilities belonging to this package’s dependencies.

    Fix vulnerabilities automatically

    Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Cross-site Scripting (XSS)

    rsshub is a Make RSS Great Again!

    Affected versions of this package are vulnerable to Cross-site Scripting (XSS) due to improper user-input sanitization via unvalidated URL parameters.

    How to fix Cross-site Scripting (XSS)?

    Upgrade rsshub to version 1.0.0-master.c910c4d or higher.

    <1.0.0-master.c910c4d