Vulnerability index

Browse CVEs

933 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Incorrect Privilege AssignmentCWE-266 × clear
Sysreptor HIGH 8.1
CVE-2025-59945

SysReptor is a fully customizable pentest reporting platform. In versions from 2024.74 to before 2025.83, authenticated and unprivileged (non-admin) …

Fix: 2025.83+
Fix from $1,950 2025-09-27
I Educar HIGH 8.8
CVE-2025-11048

A security vulnerability has been detected in Portabilis i-Educar up to 2.10. Affected by this vulnerability is an unknown functionality of the file …

Fix: after 2.10.0
Fix from $1,950 2025-09-26
I Educar HIGH 8.8
CVE-2025-11047

A weakness has been identified in Portabilis i-Educar up to 2.10. Affected is an unknown function of the file /module/Api/aluno. This manipulation of…

Fix: after 2.10.0
Fix from $1,950 2025-09-26
Unclassified HIGH 7.3
CVE-2025-11030

A vulnerability was detected in Tutorials-Website Employee Management System up to 611887d8f8375271ce8abc704507d46340837a60. Impacted is an unknown f…

Mitigation only
Fix from $1,950 2025-09-26
Unclassified MEDIUM 5.3
CVE-2025-10992

A vulnerability was determined in roncoo roncoo-pay up to 9428382af21cd5568319eae7429b7e1d0332ff40. Affected is an unknown function of the file /user…

Mitigation only
Fix from $1,600 2025-09-26
Ruoyi Vue Pro HIGH 8.8
CVE-2025-10988

A vulnerability was identified in YunaiV ruoyi-vue-pro up to 2025.09. This affects an unknown part of the file /crm/business/transfer. Such manipulat…

Fix: after 2025.09
Fix from $1,950 2025-09-26
Ruoyi HIGH 8.8
CVE-2025-10989

A security flaw has been discovered in yangzongzhuan RuoYi up to 4.8.1. This vulnerability affects unknown code of the file /system/role/authUser/sel…

Fix: after 4.8.1
Fix from $1,950 2025-09-26
Jeecg Boot MEDIUM 6.5
CVE-2025-10981

A vulnerability was detected in JeecgBoot up to 3.8.2. This impacts an unknown function of the file /sys/tenant/exportXls. Performing manipulation re…

Fix: after 3.8.2
Fix from $1,600 2025-09-26
Yudao Cloud HIGH 8.8
CVE-2025-10987

A vulnerability was determined in YunaiV yudao-cloud up to 2025.09. Affected by this issue is some unknown functionality of the file /crm/contact/tra…

Fix: after 2025.09
Fix from $1,950 2025-09-26
Jeecg Boot MEDIUM 6.5
CVE-2025-10980

A security vulnerability has been detected in JeecgBoot up to 3.8.2. This affects an unknown function of the file /sys/position/exportXls. Such manip…

Fix: after 3.8.2
Fix from $1,600 2025-09-26
Jeecg Boot MEDIUM 6.5
CVE-2025-10978

A security flaw has been discovered in JeecgBoot up to 3.8.2. The affected element is an unknown function of the file /sys/user/exportXls of the comp…

Fix: after 3.8.2
Fix from $1,600 2025-09-25
Jeecg Boot MEDIUM 6.5
CVE-2025-10979

A weakness has been identified in JeecgBoot up to 3.8.2. The impacted element is an unknown function of the file /sys/role/exportXls. This manipulati…

Fix: after 3.8.2
Fix from $1,600 2025-09-25
Jeecg Boot MEDIUM 5.3
CVE-2025-10977

A vulnerability was identified in JeecgBoot up to 3.8.2. Impacted is an unknown function of the file /sys/tenant/deleteBatch. The manipulation of the…

Fix: after 3.8.2
Fix from $1,600 2025-09-25
Jeecg Boot MEDIUM 5.3
CVE-2025-10976

A vulnerability was determined in JeecgBoot up to 3.8.2. This issue affects some unknown processing of the file /api/getDepartUserList. Executing man…

Fix: after 3.8.2
Fix from $1,600 2025-09-25
Unclassified HIGH 7.8
CVE-2025-10941

A vulnerability was determined in Topaz SERVCore Teller 2.14.0-RC2/2.14.1. Affected by this issue is some unknown functionality of the file SERVCoreT…

Mitigation only
Fix from $1,950 2025-09-25
Storagegrid MEDIUM 5.4
CVE-2025-26517

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 are susceptible to a privilege escalation vulnerability. Succe…

Fix: 11.8.0.15 / 11.9.0.8+
Fix from $1,600 2025-09-19
Jeecg Boot HIGH 8.8
CVE-2025-10707

A weakness has been identified in JeecgBoot up to 3.8.2. Affected is an unknown function of the file /message/sysMessageTemplate/sendMsg. Executing m…

Fix: after 3.8.2
Fix from $1,950 2025-09-19
Repairit CRITICAL 9.4
CVE-2025-10644

Wondershare Repairit SAS Token Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability allows remote attackers to byp…

Mitigation only
Fix from $2,300 2025-09-17
I Educar HIGH 8.8
CVE-2025-10608

A vulnerability was detected in Portabilis i-Educar up to 2.10. The affected element is an unknown function of the file /enrollment-history/. Perform…

Fix: after 2.10.0
Fix from $1,950 2025-09-17
Crmeb HIGH 8.8
CVE-2025-10390

A weakness has been identified in CRMEB up to 5.6.1. The affected element is the function editAddress of the file app/services/user/UserAddressServic…

Fix: after 5.6.1
Fix from $1,950 2025-09-14
Crmeb HIGH 8.8
CVE-2025-10389

A security flaw has been discovered in CRMEB up to 5.6.1. Impacted is the function Save of the file app/services/system/admin/SystemAdminServices.php…

Fix: after 5.6.1
Fix from $1,950 2025-09-14
Ruoyi MEDIUM 5.4
CVE-2025-10384

A flaw has been found in yangzongzhuan RuoYi up to 4.8.1. Affected by this vulnerability is an unknown functionality of the file /system/role/authUse…

Fix: after 4.8.1
Fix from $1,600 2025-09-13
Unclassified HIGH 7.3
CVE-2025-10374

A security flaw has been discovered in Shenzhen Sixun Business Management System 7/11. This affects an unknown part of the file /Adm/OperatorStop. Pe…

No fix yet
Fix from $1,950 2025-09-13
Jeecg Boot MEDIUM 6.5
CVE-2025-10319

A security flaw has been discovered in JeecgBoot up to 3.8.2. Affected by this issue is some unknown functionality of the file /sys/tenant/exportLog …

Fix: after 3.8.2
Fix from $1,600 2025-09-12
Jeecg Boot HIGH 8.8
CVE-2025-10318

A vulnerability was identified in JeecgBoot up to 3.8.2. Affected by this vulnerability is an unknown functionality of the file /api/system/sendWebSo…

Fix: after 3.8.2
Fix from $1,950 2025-09-12
Litemall HIGH 8.8
CVE-2025-10291

A weakness has been identified in linlinjava litemall up to 1.8.0. This affects the function WxAftersaleController of the file /wx/aftersale/cancel. …

Fix: after 1.8.0
Fix from $1,950 2025-09-12
Ruoyi Vue Pro HIGH 8.8
CVE-2025-10278

A flaw has been found in YunaiV ruoyi-vue-pro up to 2025.09. Impacted is an unknown function of the file /crm/contact/transfer. This manipulation of …

Fix: after 2025.09
Fix from $1,950 2025-09-12
Ruoyi Vue Pro HIGH 8.8
CVE-2025-10276

A security vulnerability has been detected in YunaiV ruoyi-vue-pro up to 2025.09. This vulnerability affects unknown code of the file /crm/contract/t…

Fix: after 2025.09
Fix from $1,950 2025-09-12
Yudao Cloud HIGH 8.8
CVE-2025-10277

A vulnerability was detected in YunaiV yudao-cloud up to 2025.09. This issue affects some unknown processing of the file /crm/receivable/submit. The …

Fix: after 2025.09
Fix from $1,950 2025-09-12
Yudao Cloud HIGH 8.8
CVE-2025-10275

A weakness has been identified in YunaiV yudao-cloud up to 2025.09. This affects an unknown part of the file /crm/business/transfer. Executing manipu…

Fix: after 2025.09
Fix from $1,950 2025-09-12