Vigybag v1.0 and before is vulnerable to Cross Site Scripting (XSS) via the upload profile picture function under my profile.
2025-06-09T17:15:29.450
2025-06-23T14:15:58.093
Analyzed
CVSSv3.1: 5.4 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | codervivek | vigybag | ≤ 1.0 | Yes |