livejournal CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

livejournal vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to livejournal, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2005-4455 cleanhtml.pl 1.129 in LiveJournal CVS before Dec 13 2005 allows remote attackers to inject scripting languages via the XSL namespace in XML, via vectors such as customview.cgi. [email protected] 5.0 0.34% 2005-12-21 2026-04-16
CVE-2005-4454 Validate-before-filter vulnerability in cleanhtml.pl 1.129 in LiveJournal CVS before Dec 7 2005, when the cleancss option is enabled, allows remote attackers to conduct cross-site scripting (XSS) attacks via a "\" (backslash) within a "javascript" scheme in a style property (such as "javas\cript"), which bypasses the "javascript" check before the "\" is stripped and then rendered in web browsers that allow scripting in style sheets. [email protected] 4.3 0.47% 2005-12-21 2026-04-16
CVE-2004-0310 Cross-site scripting (XSS) vulnerability in LiveJournal 1.0 and 1.1 allows remote attackers to execute Javascript as other users via the stylesheet, which does not strip the semicolon or parentheses, as demonstrated using a background:url. [email protected] 6.8 0.83% 2004-11-23 2026-04-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence