Description
YOURLS through 1.7.3 is affected by a type juggling vulnerability in the api component that can result in login bypass.
Remediation
References
Related Vulnerabilities
MySQL CVE-2016-5632 Vulnerability (CVE-2016-5632)
WordPress Plugin Conditional Payments for WooCommerce Cross-Site Request Forgery (2.3.1)
Jenkins Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-1000504)
SharePoint CVE-2018-8161 Vulnerability (CVE-2018-8161)
Plone CMS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-4042)