CVE-2018-13849: Instagram-Clone Project Instagram-Clone
Medium severity, CVSS 6.1. EPSS: 2.3% chance of exploitation in the next 30 days.
edit_requests.php in yTakkar Instagram-clone through 2018-04-23 has XSS via an onmouseover payload because of an inadequate XSS protection mechanism based on preg_replace.
Affected products
- Instagram-Clone Project Instagram-Clone: up to and including 2018-04-23
Published 2018-07-10. Last modified 2026-06-17.