All 22 CVE vulnerabilities found in FreshRSS, with AI-generated Chinese analysis, references, and POCs.
This page aggregates known security weaknesses for the open-source RSS aggregator FreshRSS, categorized by Common Weakness Enumeration types and specific product tags. It collects vulnerability records spanning from the product’s initial public release through the most recent patch cycles, ensuring a comprehensive historical view of its security posture. By consolidating data from vendor advisories, third-party trackers, and community reports, this resource allows users to track FreshRSS’s official security responses and understand the evolution of specific weakness classes such as cross-site scripting or authentication bypasses within the application. Readers can use this aggregated view to look up the complete vulnerability history of FreshRSS, helping developers and system administrators assess risk exposure, verify patch application, and contextualize individual CVEs against the broader landscape of reported issues. The data is structured to facilitate deep analysis of recurring security patterns, enabling stakeholders to make informed decisions about upgrade schedules and configuration hardening. This centralized view removes the need to query multiple disparate sources, providing a clear, chronological record of how FreshRSS has addressed security flaws over time. It serves as a reference point for security audits and helps clarify the relationship between reported vulnerabilities and the underlying codebase changes. Ultimately, this page aims to enhance transparency and support proactive security management for all FreshRSS deployments.
Vendor: FreshRSS
All 22 known CVE vulnerabilities affecting FreshRSS with full Chinese analysis, references, and POCs where available.