Diyhi
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in any Diyhi product.
RSS Feeds for Diyhi security vulnerabilities
Create a CVE RSS feed including security vulnerabilities found in Diyhi products with stack.watch. Just hit watch, then grab your custom RSS feed url.
Products by Diyhi Sorted by Most Security Vulnerabilities since 2018
By the Year
In 2026 there have been 0 vulnerabilities in Diyhi. Diyhi did not have any published security vulnerabilities last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 0 | 0.00 |
| 2025 | 0 | 0.00 |
| 2024 | 0 | 0.00 |
| 2023 | 0 | 0.00 |
| 2022 | 8 | 7.24 |
It may take a day or so for new Diyhi vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Diyhi Security Vulnerabilities
| CVE | Date | Vulnerability | Products |
|---|---|---|---|
| CVE-2021-43098 | Mar 28, 2022 |
A File Upload vulnerability exists in bbs v5.3A File Upload vulnerability exists in bbs v5.3 via QuestionManageAction.java in a getType function. |
|
| CVE-2021-43097 | Mar 28, 2022 |
A Server-side Template Injection (SSTI) vulnerability exists in bbs 5.3 in TemplateManageAction.javaA Server-side Template Injection (SSTI) vulnerability exists in bbs 5.3 in TemplateManageAction.javawhich could let a malicoius user execute arbitrary code. |
|
| CVE-2021-43103 | Mar 28, 2022 |
A File Upload vulnerability exists in bbs 5.3 isA File Upload vulnerability exists in bbs 5.3 is via ForumManageAction.java in a GetType function, which lets a remote malicious user execute arbitrary code. |
|
| CVE-2021-43102 | Mar 28, 2022 |
A File Upload vulnerability exists in bbs 5.3 isA File Upload vulnerability exists in bbs 5.3 is via HelpManageAction.java in a GetType function, which lets a remote malicious user execute arbitrary code. |
|
| CVE-2021-43101 | Mar 28, 2022 |
A File Upload vulnerability exists in bbs 5.3 isA File Upload vulnerability exists in bbs 5.3 is via MembershipCardManageAction.java in a GetType function, which lets a remote malicious user execute arbitrary code. |
|
| CVE-2021-43100 | Mar 28, 2022 |
A File Upload vulnerability exists in bbs 5.3 isA File Upload vulnerability exists in bbs 5.3 is via TopicManageAction.java in a GetType function, which lets a remote malicious user execute arbitrary code. |
|
| CVE-2021-43099 | Mar 28, 2022 |
An Archive Extraction (AKA "Zip Slip) vulnerability exists in bbs 5.3 in the UpgradeNow function in UpgradeManageAction.javaAn Archive Extraction (AKA "Zip Slip) vulnerability exists in bbs 5.3 in the UpgradeNow function in UpgradeManageAction.java, which unzips the arbitrary upladed zip file without checking filenames. The vulnerability is exploited using a specially crafted archive that holds directory traversal filenames (e.g. ../../evil.exe). |
|
| CVE-2022-23390 | Feb 14, 2022 |
An issue in the getType function of BBS Forum v5.3 and belowAn issue in the getType function of BBS Forum v5.3 and below allows attackers to upload arbitrary files. |
|