movary vulnerabilities
CVEs whose affected-version data names the movary package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2025-64116Medium· 6.1Movary is a web application to track, rate and explore your movie watch history
Movary is a web application to track, rate and explore your movie watch history. Prior to 0.69.0, the login page accepts a redirect parameter without validation, allowing attackers to redirect authenticated users to arbitrary external si…
▾ Sunlitleepeuker · movaryEPSS 0.25%via NVD
CVE-2025-64115Medium· 6.1Movary is a web application to track, rate and explore your movie watch history
Movary is a web application to track, rate and explore your movie watch history. Versions up to and including 0.68.0 use the HTTP Referer header value directly for redirects in multiple settings endpoints, allowing a crafted link to caus…
▾ Sunlitleepeuker · movaryEPSS 0.26%via NVD