Known vulnerabilities
From Vintage Story Wiki
This is a list of known vulnerabilities across all Vintage Story services:
- Wiki URL Content Spoofing
- User email enumeration through the forget password function
- Potential Broken Link Hijacking (we don't check if all linked sites redirect to registered sites)
- Malicious site linking - many areas do not prevent users to link to a malicious site