CVE-2017-1000129: s9y Serendipity

High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.

Serendipity 2.0.3 is vulnerable to a SQL injection in the blog component resulting in information disclosure

Affected products

  • s9y Serendipity: version 2.0.3 only

Published 2017-11-17. Last modified 2026-06-17.