Vulnerability index

Browse CVEs

6,053 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
Zzcms MEDIUM 6.1
CVE-2025-1949

A vulnerability, which was classified as problematic, has been found in ZZCMS 2025. This issue affects some unknown processing of the file /3/ucenter…

No fix yet
Fix from $1,600 2025-03-04
Novel Plus MEDIUM 6.5
CVE-2025-26182

An issue in xxyopen novel plus v.4.4.0 and before allows a remote attacker to execute arbitrary code via the PageController.java file

Fix: after 4.4.0
Fix from $1,600 2025-03-04
Tripleplay CRITICAL 10.0
CVE-2024-50704

Unauthenticated remote code execution vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to execute arbitrary code via a spec…

Fix: 24.1.2+
Fix from $2,300 2025-03-04
Tripleplay CRITICAL 10.0
CVE-2024-50707

Unauthenticated remote code execution vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to execute arbitrary code via the X-…

Fix: 24.1.2+
Fix from $2,300 2025-03-04
Blood Bank System MEDIUM 6.1
CVE-2025-1904

A vulnerability, which was classified as problematic, has been found in code-projects Blood Bank System 1.0. Affected by this issue is some unknown f…

No fix yet
Fix from $1,600 2025-03-04
Employee Management System MEDIUM 6.1
CVE-2025-1905

A vulnerability, which was classified as problematic, was found in SourceCodester Employee Management System 1.0. This affects an unknown part of the…

No fix yet
Fix from $1,600 2025-03-04
The Ark CRITICAL 9.8
CVE-2025-26970

Improper Control of Generation of Code ('Code Injection') vulnerability in FRESHFACE Ark Theme Core ark-core allows Code Injection.This issue affects…

Fix: after 1.70.0
Fix from $2,300 2025-03-03
Stage.js MEDIUM 6.1
CVE-2024-53386

Stage.js through 0.8.10 allows DOM Clobbering (with resultant XSS for untrusted input that contains HTML but does not directly contain JavaScript), b…

Fix: after 0.8.10
Fix from $1,600 2025-03-03
Prism MEDIUM 5.4
CVE-2024-53382

Prism (aka PrismJS) through 1.29.0 allows DOM Clobbering (with resultant XSS for untrusted input that contains HTML but does not directly contain Jav…

Fix: after 1.29.0
Fix from $1,600 2025-03-03
Mini Tmall MEDIUM 5.4
CVE-2025-1817

A vulnerability classified as problematic was found in Mini-Tmall up to 20250211. This vulnerability affects unknown code of the file /admin of the c…

Fix: after 2025-02-11
Fix from $1,600 2025-03-02
Unclassified MEDIUM 6.5
CVE-2024-13806

The The Authors List plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.0.6. This is due to …

Mitigation only
Fix from $1,600 2025-03-01
Unclassified CRITICAL 9.9
CVE-2025-27554

ToDesktop before 2024-10-03, as used by Cursor before 2024-10-03 and other applications, allows remote attackers to execute arbitrary commands on the…

Mitigation only
Fix from $2,300 2025-03-01
Unclassified HIGH 8.8
CVE-2025-26264EPSS 23%

GeoVision GV-ASWeb with the version 6.1.2.0 or less (fixed in 6.2.0), contains a Remote Code Execution (RCE) vulnerability within its Notification Se…

Mitigation only
Fix from $1,950 2025-02-27
Unclassified CRITICAL 9.8
CVE-2024-53944EPSS 40%

An issue was discovered on Tuoshi/Dionlink LT15D 4G Wi-Fi devices through M7628NNxlSPv2xUI_v1.0.1802.10.08_P4 and LT21B devices through M7628xUSAxUIv…

Mitigation only
Fix from $2,300 2025-02-27
Maxair MEDIUM 6.1
CVE-2025-1742

A vulnerability, which was classified as problematic, has been found in pihome-shc PiHome 2.0. Affected by this issue is some unknown functionality o…

No fix yet
Fix from $1,600 2025-02-27
Foxcms CRITICAL 9.8
CVE-2025-25789

FoxCMS v1.2.5 was discovered to contain a remote code execution (RCE) vulnerability via the index() method at \controller\Sitemap.php.

No fix yet
Fix from $2,300 2025-02-26
Unclassified MEDIUM 6.8
CVE-2024-52925

In OPSWAT MetaDefender Kiosk before 4.7.0, arbitrary code execution can be performed by an attacker via the MD Kiosk Unlock Device feature for softwa…

Mitigation only
Fix from $1,600 2025-02-26
Mautic CRITICAL 9.9
CVE-2024-47051

This advisory addresses two critical security vulnerabilities present in Mautic versions before 5.2.3. These vulnerabilities could be exploited by au…

Fix: 5.2.3+
Fix from $2,300 2025-02-26
Vtiger Crm MEDIUM 6.1
CVE-2025-1618

A vulnerability has been found in vTiger CRM 6.4.0/6.5.0 and classified as problematic. This vulnerability affects unknown code of the file /modules/…

Fix: 7.0+
Fix from $1,600 2025-02-24
Br 6288acl Firmware MEDIUM 6.1
CVE-2025-1612

A vulnerability was found in Edimax BR-6288ACL 1.30. It has been declared as problematic. This vulnerability affects unknown code of the file wireles…

Mitigation only
Fix from $1,600 2025-02-24
Best Church Management Software MEDIUM 6.1
CVE-2025-1597

A vulnerability was found in SourceCodester Best Church Management Software 1.0. It has been classified as problematic. Affected is an unknown functi…

No fix yet
Fix from $1,600 2025-02-23
Best Employee Management System MEDIUM 6.1
CVE-2025-1592

A vulnerability was found in SourceCodester Best Employee Management System 1.0. It has been rated as problematic. Affected by this issue is some unk…

Mitigation only
Fix from $1,600 2025-02-23
Employee Management System MEDIUM 6.1
CVE-2025-1591

A vulnerability was found in SourceCodester Employee Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an…

Mitigation only
Fix from $1,600 2025-02-23
E Learning System MEDIUM 6.1
CVE-2025-1589

A vulnerability was found in SourceCodester E-Learning System 1.0 and classified as problematic. This issue affects some unknown processing of the fi…

Mitigation only
Fix from $1,600 2025-02-23
Blood Bank System MEDIUM 6.1
CVE-2025-1586

A vulnerability was found in code-projects Blood Bank System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the…

No fix yet
Fix from $1,600 2025-02-23
Tale MEDIUM 5.4
CVE-2025-1585

A vulnerability, which was classified as problematic, has been found in otale tale up to 2.0.5. This issue affects the function OptionsService of the…

Fix: after 2.0.5
Fix from $1,600 2025-02-23
Blood Bank System MEDIUM 6.1
CVE-2025-1579

A vulnerability was found in code-projects Blood Bank System 1.0 and classified as problematic. This issue affects some unknown processing of the fil…

No fix yet
Fix from $1,600 2025-02-23
Blood Bank System MEDIUM 5.4
CVE-2025-1577

A vulnerability, which was classified as problematic, has been found in code-projects Blood Bank System 1.0. Affected by this issue is some unknown f…

No fix yet
Fix from $1,600 2025-02-23
Custom Post Type Date Archives CRITICAL 9.8
CVE-2025-1510

The The Custom Post Type Date Archives plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.7.…

Fix: after 2.7.1
Fix from $2,300 2025-02-22
Show Me The Cookies CRITICAL 9.8
CVE-2025-1509

The The Show Me The Cookies plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.0. This is du…

Mitigation only
Fix from $2,300 2025-02-22