Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2025-0335
A vulnerability was found in code-projects Online Bike Rental System 1.0 and classified as critical. Affected by this issue is some unknown functiona…
Online Bike Rental System
No fix yet
HIGH 8.8
CVE-2024-13212
A vulnerability classified as critical has been found in SingMR HouseRent 1.0. This affects the function singleUpload/upload of the file src/main/jav…
Houserent
Mitigation only
HIGH 7.2
CVE-2024-13210
A vulnerability was found in donglight bookstore电商书城系统说明 1.0. It has been declared as critical. Affected by this vulnerability is the functio…
Bookstore
No fix yet
HIGH 7.2
CVE-2024-13201
A vulnerability has been found in wander-chu SpringBoot-Blog 1.0 and classified as critical. This vulnerability affects the function upload of the fi…
Springboot Blog
No fix yet
CRITICAL 9.8
CVE-2024-13191
A vulnerability, which was classified as critical, has been found in ZeroWdd myblog 1.0. This issue affects the function upload of the file src/main/…
Myblog
No fix yet
CRITICAL 9.8
CVE-2025-22137
Pingvin Share is a self-hosted file sharing platform and an alternative for WeTransfer. This vulnerability allows an authenticated or unauthenticated…
Patch available
HIGH 8.8
CVE-2024-12854
The Garden Gnome Package plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the functionality that a…
Mitigation only
HIGH 8.8
CVE-2024-12853
The Modula Image Gallery plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the zip upload functiona…
Modula Image Gallery
2.11.11+
CRITICAL 9.9
CVE-2025-22133
WeGIA is a web manager for charitable institutions. Prior to 3.2.8, a critical vulnerability was identified in the /WeGIA/html/socio/sistema/controll…
Wegia
3.2.8+
CRITICAL 9.8
CVE-2022-41573
An issue was discovered in Ovidentia 8.3. The file upload feature does not prevent the uploading of executable files. A user can upload a .png file c…
No fix yet
CRITICAL 9.8
CVE-2025-21624
ClipBucket V5 provides open source video hosting with PHP. Prior to 5.5.1 - 239, a file upload vulnerability exists in the Manage Playlist functional…
Clipbucket
5.5.1-239+
HIGH 8.8
CVE-2024-53345
An authenticated arbitrary file upload vulnerability in Car Rental Management System v1.0 to v1.3 allows attackers to execute arbitrary code via uplo…
Mitigation only
CRITICAL 10.0
CVE-2024-43243
Unrestricted Upload of File with Dangerous Type vulnerability in themeglow JobBoard Job listing job-board-light allows Upload a Web Shell to a Web Se…
Mitigation only
CRITICAL 9.8
CVE-2024-56828
File Upload vulnerability in ChestnutCMS through 1.5.0. Based on the code analysis, it was determined that the /api/member/avatar API endpoint receiv…
Chestnutcms
after 1.5.0
CRITICAL 9.8
CVE-2024-13145
A vulnerability classified as critical was found in zhenfeng13 My-Blog 1.0. Affected by this vulnerability is the function upload of the file src/mai…
My Blog
No fix yet
CRITICAL 9.8
CVE-2024-13144
A vulnerability classified as critical has been found in zhenfeng13 My-Blog 1.0. Affected is the function uploadFileByEditomd of the file src/main/ja…
My Blog
No fix yet
HIGH 8.8
CVE-2024-13138
A vulnerability was found in wangl1989 mysiteforme 1.0. It has been declared as critical. This vulnerability affects the function upload of the file …
Mysiteforme
No fix yet
HIGH 8.8
CVE-2024-13134
A vulnerability, which was classified as critical, was found in ZeroWdd studentmanager 1.0. Affected is the function addTeacher/editTeacher of the fi…
Studentmanager
Mitigation only
HIGH 8.8
CVE-2024-13133
A vulnerability, which was classified as critical, has been found in ZeroWdd studentmanager 1.0. This issue affects the function addStudent/editStude…
Studentmanager
Mitigation only
CRITICAL 9.8
CVE-2025-0213
A vulnerability was found in Campcodes Project Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of th…
Project Management System
No fix yet
HIGH 8.0
CVE-2025-22389
An issue was discovered in Optimizely EPiServer.CMS.Core before 12.32.0. A medium-severity vulnerability exists in the CMS, where the application doe…
Optimizely Cms
12.32.0+
CRITICAL 9.8
CVE-2024-55078
An arbitrary file upload vulnerability in the component /adminUser/updateImg of WukongCRM-11.0-JAVA v11.3.3 allows attackers to execute arbitrary cod…
Mitigation only
MEDIUM 6.6
CVE-2024-56264
Unrestricted Upload of File with Dangerous Type vulnerability in Beee ACF City Selector acf-city-selector allows Upload a Web Shell to a Web Server.T…
Mitigation only
CRITICAL 9.1
CVE-2024-56249
Unrestricted Upload of File with Dangerous Type vulnerability in Ludwig You WPMasterToolKit wpmastertoolkit allows Upload a Web Shell to a Web Server…
Mitigation only
CRITICAL 10.0
CVE-2024-56829
Huang Yaoshi Pharmaceutical Management Software through 16.0 allows arbitrary file upload via a .asp filename in the fileName element of the UploadFi…
Mitigation only
CRITICAL 10.0
CVE-2024-56064EPSS 30%
Unrestricted Upload of File with Dangerous Type vulnerability in azzaroco WP SuperBackup indeed-wp-superbackup allows Upload a Web Shell to a Web Ser…
Mitigation only
CRITICAL 9.8
CVE-2024-56046
Unrestricted Upload of File with Dangerous Type vulnerability in VibeThemes WPLMS wplms_plugin allows Upload a Web Shell to a Web Server.This issue a…
Wordpress Learning Management System
1.9.9.1+
CRITICAL 9.8
CVE-2024-13022
A vulnerability, which was classified as critical, was found in taisan tarzan-cms 1.0.0. This affects the function UploadResponse of the file src/mai…
Tarzan Cms
No fix yet
HIGH 7.6
CVE-2024-56508
LinkAce is a self-hosted archive to collect links of your favorite websites. Prior to 1.15.6, a file upload vulnerability exists in the LinkAce. This…
Linkace
1.15.6+
CRITICAL 9.8
CVE-2024-12956
A vulnerability was found in 1000 Projects Portfolio Management System MCA 1.0 and classified as critical. This issue affects some unknown processing…
Portfolio Management System Mca
No fix yet