CVE-2020-21101: Screenly

Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.

Cross Site Scriptiong vulnerabilityin Screenly screenly-ose all versions, including v1.8.2 (2019-09-25-Screenly-OSE-lite.img), in the 'Add Asset' page via manipulation of a 'URL' field, which could let a remote malicious user execute arbitrary code.

Affected products

  • Screenly Screenly: version 0.9 only; version 0.9.1 only; version 0.10 only; version 0.11 only; version 0.12 only; version 0.12.1 only; …

Published 2021-04-29. Last modified 2026-06-17.