Product
oxygenz clipbucket
39 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-32321
CVE-2026-28354
CVE-2026-26997
CVE-2026-26005
CVE-2026-25728
CVE-2026-21875
CVE-2025-67418
CVE-2025-65113
CVE-2025-62709
CVE-2025-64339
CVE-2025-64338
CVE-2025-64336
CVE-2025-64114
CVE-2025-62715
CVE-2025-62429
CVE-2025-62430
CVE-2025-62424
CVE-2025-62423
CVE-2025-55912
CVE-2025-55911
CVE-2013-10040
CVE-2025-21624
CVE-2025-21623
CVE-2025-21622
CVE-2024-54136
CVE-2024-54135
CVE-2018-7666
CVE-2018-7665
CVE-2018-7664
CVE-2016-1000307
CVE-2015-4673
CVE-2016-4848
CVE-2012-5849
CVE-2015-2102
CVE-2014-4187
CVE-2012-6644
CVE-2012-6643
CVE-2012-6642
CVE-2011-3717
>= 5.3 and < 5.5.3-80
ClipBucket v5 is an open source video sharing platform. An authenticated time-based blind SQL injection vulnerability exists in Cl
>= 5.3 and < 5.5.3-59
ClipBucket v5 is an open source video sharing platform. Prior to version 5.5.3 #59, collection item operations are vulnerable to a
>= 5.3 and < 5.5.3-59
ClipBucket v5 is an open source video sharing platform. Prior to version 5.5.3 #59, a normal authenticated user can store the XSS
>= 5.3 and < 5.5.3-45
ClipBucket v5 is an open source video sharing platform. Prior to 5.5.3 - #45, in Clip Bucket V5, The Remote Play allows creating v
>= 5.3 and < 5.5.3-40
ClipBucket v5 is an open source video sharing platform. Prior to 5.5.3 - #40, a Time-of-Check to Time-of-Use (TOCTOU) race conditi
>= 5.3 and < 5.5.2-191
ClipBucket v5 is an open source video sharing platform. Versions 5.5.2-#187 and below allow an attacker to perform Blind SQL Injec
>= 5.3 and <= 5.5.2
ClipBucket 5.5.2 is affected by an improper access control issue where the product is shipped or deployed with hardcoded default a
>= 5.3 and < 5.5.2-164
ClipBucket v5 is an open source video sharing platform. Prior to version 5.5.2 - #164, an authorization bypass vulnerability in th
>= 5.3 and < 5.5.2-163
ClipBucket v5 is an open source video sharing platform. In ClipBucket version 5.5.2, a change to network.class.php causes the appl
>= 5.3 and < 5.5.2-147
ClipBucket v5 is an open source video sharing platform. In versions 5.5.2-#146 and below, the Manage Playlists feature is vulnerab
>= 5.3 and < 5.5.2-157
ClipBucket v5 is an open source video sharing platform. In versions 5.5.2 - #156 and below, an authenticated regular user can crea
>= 5.3 and < 5.5.2-147
ClipBucket v5 is an open source video sharing platform. In versions 5.5.2-#146 and below, the Manage Photos feature is vulnerable
>= 5.3 and < 5.5.2-152
ClipBucket v5 is an open source video sharing platform. Versions 5.5.2 - #151 and below allow authenticated administrators with pl
>= 5.3 and < 5.5.2-157
ClipBucket v5 is an open source video sharing platform. Versions 5.5.2-#147 and below contain a stored Cross-Site Scripting (XSS)
>= 5.3 and < 5.5.2-147
ClipBucket v5 is an open source video sharing platform. Prior to version 5.5.2 #147, ClipBucket v5 is vulnerable to arbitrary PHP
>= 5.3 and < 5.5.2-146
ClipBucket v5 is an open source video sharing platform. ClipBucket v5 through build 5.5.2 #145 allows stored cross-site scripting
>= 5.3 and < 5.5.2-147
ClipBucket is a web-based video-sharing platform. In ClipBucket version 5.5.2 - #146 and earlier, the /admin_area/template_editor.
>= 5.3 and < 5.5.2-142
ClipBucket V5 provides open source video hosting with PHP. In version5.5.2 - #140 and earlier, a Blind SQL injection vulnerability
<= 5.5.0
An issue in ClipBucket 5.5.0 and prior versions allows an unauthenticated attacker can exploit the plupload endpoint in photo_uplo
< 5.5.2-90
An issue Clip Bucket v.5.5.2 Build#90 allows a remote attacker to execute arbitrary codes via the file_downloader.php and the file
<= 2.6
ClipBucket version 2.6 and earlier contains a critical vulnerability in the ofc_upload_image.php script located at /admin_area/cha
>= 5.3 and < 5.5.1-239
ClipBucket V5 provides open source video hosting with PHP. Prior to 5.5.1 - 239, a file upload vulnerability exists in the Manage
>= 5.3 and < 5.5.1-238
ClipBucket V5 provides open source video hosting with PHP. Prior to 5.5.1 - 238, ClipBucket V5 allows unauthenticated attackers to
>= 5.3 and < 5.5.1-237
ClipBucket V5 provides open source video hosting with PHP. During the user avatar upload workflow, a user can choose to upload and
>= 5.5.1-141 and < 5.5.1-200
ClipBucket V5 provides open source video hosting with PHP. ClipBucket-v5 Version 5.5.1 Revision 199 and below is vulnerable to PHP
>= 2.0 and < 5.5.1-200
ClipBucket V5 provides open source video hosting with PHP. ClipBucket-v5 Version 2.0 to Version 5.5.1 Revision 199 are vulnerable
<= 4.0.0
An issue was discovered in ClipBucket before 4.0.0 Release 4902. SQL injection vulnerabilities exist in the actions/vote_channel.p
<= 4.0.0
An issue was discovered in ClipBucket before 4.0.0 Release 4902. A malicious file can be uploaded via the name parameter to action
<= 4.0.0
An issue was discovered in ClipBucket before 4.0.0 Release 4902. Any OS commands can be injected via shell metacharacters in the f
<= 2.8.1
Multiple Cross Site Scripting (XSS) Vulnerabilities in ClipBucket v2.8.1 and probably prior allow Remote Attackers to inject arbit
all versions
Multiple cross-site scripting (XSS) vulnerabilities in ClipBucket 2.7.0.5 allow remote authenticated users to inject arbitrary web
<= 2.8.1
Cross-site scripting (XSS) vulnerability in ClipBucket before 2.8.1 RC2 allows remote attackers to inject arbitrary web script or
<= 2.6
Multiple SQL injection vulnerabilities in ClipBucket 2.6 Revision 738 and earlier allow remote attackers to execute arbitrary SQL
all versions
SQL injection vulnerability in view_item.php in ClipBucket 2.7 RC3 (2.7.0.4.v2929-rc3) allows remote attackers to execute arbitrar
all versions
Cross-site scripting (XSS) vulnerability in signup.php in ClipBucket allows remote attackers to inject arbitrary web script or HTM
all versions
Multiple cross-site scripting (XSS) vulnerabilities in ClipBucket 2.6 allow remote attackers to inject arbitrary web script or HTM
all versions
Multiple SQL injection vulnerabilities in the update_counter function in includes/functions.php in ClipBucket 2.6 allow remote att
all versions
Cross-site scripting (XSS) vulnerability in ClipBucket 2.6 allows remote attackers to inject arbitrary web script or HTML via the
all versions
ClipBucket 2.0.9 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the in