Myblog Zerowdd Myblog

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Zerowdd Myblog.

By the Year

In 2026 there have been 0 vulnerabilities in Zerowdd Myblog. Last year, in 2025 Myblog had 4 security vulnerabilities published. Right now, Myblog is on track to have less security vulnerabilities in 2026 than it did last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 4 8.33

It may take a day or so for new Myblog vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Zerowdd Myblog Security Vulnerabilities

ZeroWdd myblog 1.0 Unrestricted File Upload Vulnerability
CVE-2024-13191 9.8 - Critical - January 08, 2025

A vulnerability, which was classified as critical, has been found in ZeroWdd myblog 1.0. This issue affects the function upload of the file src/main/java/com/wdd/myblog/controller/admin/uploadController.java. The manipulation of the argument file leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

Unrestricted File Upload

Probable XSS in ZeroWdd myblog 1.0 BlogController update (Java)
CVE-2024-13192 5.4 - Medium - January 08, 2025

A vulnerability, which was classified as problematic, was found in ZeroWdd myblog 1.0. Affected is the function update of the file src/main/java/com/wdd/myblog/controller/admin/BlogController.java. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

XSS

XML injection in ZeroWdd myblog 1.0 BlogMapper.xml
CVE-2024-13190 - January 08, 2025

A vulnerability classified as critical was found in ZeroWdd myblog 1.0. This vulnerability affects unknown code of the file src/main/resources/mapper/BlogMapper.xml. The manipulation of the argument findBlogList/getTotalBlogs leads to xml injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

Injection

Permission Bypass in ZeroWdd myblog 1.0 via MyBlogMvcConfig
CVE-2024-13189 9.8 - Critical - January 08, 2025

A vulnerability classified as critical has been found in ZeroWdd myblog 1.0. This affects an unknown part of the file src/main/java/com/wdd/myblog/config/MyBlogMvcConfig.java. The manipulation leads to permission issues. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

Permission Issues

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Zerowdd Myblog or by Zerowdd? Click the Watch button to subscribe.

Zerowdd
Vendor

subscribe