Export CSV

Products

1 vendor
VendorProductsCVEsKEVAvg EPSSWorst Severity
12031.3%LOW

Related CVEs

2
CVE IDDescriptionSeverityCVSSKEVEPSSPublished
CVE-2026-2623A flaw has been found in Blossom up to 1.17.1. This issue affects the function put of the file blossom-backend/common/common-iaas/src/main/java/com/blossom/common/iaas/blos/BLOSManager.java of the component File Upload. This manipulation causes path traversal. The attack may be initiated remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.LOW2.145.7%Feb 17, 2026
CVE-2026-2622A vulnerability was detected in Blossom up to 1.17.1. This vulnerability affects the function content of the file blossom-backend/backend/src/main/java/com/blossom/backend/server/article/draft/ArticleController.java of the component Article Title Handler. The manipulation results in cross site scripting. The attack can be launched remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.LOW2.016.8%Feb 17, 2026