CVE-2020-18066: Zrlog

Medium severity, CVSS 6.1. EPSS: 0.6% chance of exploitation in the next 30 days.

Cross Site Scripting vulnerability in ZrLog 2.1.0 via the (1) userName and (2) email parameters in post/addComment.

Affected products

  • Zrlog Zrlog: version 2.1.0 only

Published 2021-06-29. Last modified 2026-06-17.