CVE-2018-9182: Lynxtechnology Twonky Server

Medium severity, CVSS 6.1. EPSS: 1.4% chance of exploitation in the next 30 days.

Twonky Server before 8.5.1 has XSS via a modified "language" parameter in the Language section.

Affected products

Published 2018-06-08. Last modified 2026-06-17.