Products: 2
    Vulnerabilities: 8
    Known Exploited: 0
    2
    Critical Level Threats
    1
    High Level Threats
    5
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2024-37879

    Improper input validation in /admin/config/save in User-friendly SVN (USVN) before v1.0.12 and below allows administrators to execute arbitrary code via the fields "siteTitle", "siteIco" and "siteLogo".

    Last Modified: Apr 15, 2026
    Published: Sep 20, 2024

    CVE-2020-17363

    USVN (aka User-friendly SVN) before 1.0.9 allows remote code execution via shell metacharacters in the number_start or number_end parameter to LastHundredRequest (aka lasthundredrequestAction) in the Timeline module. NOTE: this may overlap CVE-2020-25069.

    Last Modified: Nov 21, 2024
    Published: Dec 31, 2020

    CVE-2020-25069

    USVN (aka User-friendly SVN) before 1.0.10 allows attackers to execute arbitrary code in the commit view.

    Last Modified: Nov 21, 2024
    Published: Sep 01, 2020

    CVE-2020-25070

    USVN (aka User-friendly SVN) before 1.0.10 allows CSRF, related to the lack of the SameSite Strict feature.

    Last Modified: Nov 21, 2024
    Published: Sep 01, 2020

    CVE-2020-17364

    USVN (aka User-friendly SVN) before 1.0.9 allows XSS via SVN logs.

    Last Modified: Nov 21, 2024
    Published: Aug 05, 2020
    Items Per Page
    Usvn Vulnerabilities & Security CVEs | CVE-DB