Vulnerability index

Browse CVEs

6,053 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
MEDIUM 6.1 CVE-2025-1949 A vulnerability, which was classified as problematic, has been found in ZZCMS 2025. This issue affects some unknown processing of the file /3/ucenter… Zzcms No fix yet Fix from $1,6002025-03-04 MEDIUM 6.5 CVE-2025-26182 An issue in xxyopen novel plus v.4.4.0 and before allows a remote attacker to execute arbitrary code via the PageController.java file Novel Plus after 4.4.0 Fix from $1,6002025-03-04 CRITICAL 10.0 CVE-2024-50704 Unauthenticated remote code execution vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to execute arbitrary code via a spec… Tripleplay 24.1.2+ Fix from $2,3002025-03-04 CRITICAL 10.0 CVE-2024-50707 Unauthenticated remote code execution vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to execute arbitrary code via the X-… Tripleplay 24.1.2+ Fix from $2,3002025-03-04 MEDIUM 6.1 CVE-2025-1904 A vulnerability, which was classified as problematic, has been found in code-projects Blood Bank System 1.0. Affected by this issue is some unknown f… Blood Bank System No fix yet Fix from $1,6002025-03-04 MEDIUM 6.1 CVE-2025-1905 A vulnerability, which was classified as problematic, was found in SourceCodester Employee Management System 1.0. This affects an unknown part of the… Employee Management System No fix yet Fix from $1,6002025-03-04 CRITICAL 9.8 CVE-2025-26970 Improper Control of Generation of Code ('Code Injection') vulnerability in FRESHFACE Ark Theme Core ark-core allows Code Injection.This issue affects… The Ark after 1.70.0 Fix from $2,3002025-03-03 MEDIUM 6.1 CVE-2024-53386 Stage.js through 0.8.10 allows DOM Clobbering (with resultant XSS for untrusted input that contains HTML but does not directly contain JavaScript), b… Stage.js after 0.8.10 Fix from $1,6002025-03-03 MEDIUM 5.4 CVE-2024-53382 Prism (aka PrismJS) through 1.29.0 allows DOM Clobbering (with resultant XSS for untrusted input that contains HTML but does not directly contain Jav… Prism after 1.29.0 Fix from $1,6002025-03-03 MEDIUM 5.4 CVE-2025-1817 A vulnerability classified as problematic was found in Mini-Tmall up to 20250211. This vulnerability affects unknown code of the file /admin of the c… Mini Tmall after 2025-02-11 Fix from $1,6002025-03-02 MEDIUM 6.5 CVE-2024-13806 The The Authors List plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.0.6. This is due to … Mitigation only Fix from $1,6002025-03-01 CRITICAL 9.9 CVE-2025-27554 ToDesktop before 2024-10-03, as used by Cursor before 2024-10-03 and other applications, allows remote attackers to execute arbitrary commands on the… Mitigation only Fix from $2,3002025-03-01 HIGH 8.8 CVE-2025-26264EPSS 23% GeoVision GV-ASWeb with the version 6.1.2.0 or less (fixed in 6.2.0), contains a Remote Code Execution (RCE) vulnerability within its Notification Se… Mitigation only Fix from $1,9502025-02-27 CRITICAL 9.8 CVE-2024-53944EPSS 40% An issue was discovered on Tuoshi/Dionlink LT15D 4G Wi-Fi devices through M7628NNxlSPv2xUI_v1.0.1802.10.08_P4 and LT21B devices through M7628xUSAxUIv… Mitigation only Fix from $2,3002025-02-27 MEDIUM 6.1 CVE-2025-1742 A vulnerability, which was classified as problematic, has been found in pihome-shc PiHome 2.0. Affected by this issue is some unknown functionality o… Maxair No fix yet Fix from $1,6002025-02-27 CRITICAL 9.8 CVE-2025-25789 FoxCMS v1.2.5 was discovered to contain a remote code execution (RCE) vulnerability via the index() method at \controller\Sitemap.php. Foxcms No fix yet Fix from $2,3002025-02-26 MEDIUM 6.8 CVE-2024-52925 In OPSWAT MetaDefender Kiosk before 4.7.0, arbitrary code execution can be performed by an attacker via the MD Kiosk Unlock Device feature for softwa… Mitigation only Fix from $1,6002025-02-26 CRITICAL 9.9 CVE-2024-47051 This advisory addresses two critical security vulnerabilities present in Mautic versions before 5.2.3. These vulnerabilities could be exploited by au… Mautic 5.2.3+ Fix from $2,3002025-02-26 MEDIUM 6.1 CVE-2025-1618 A vulnerability has been found in vTiger CRM 6.4.0/6.5.0 and classified as problematic. This vulnerability affects unknown code of the file /modules/… Vtiger Crm 7.0+ Fix from $1,6002025-02-24 MEDIUM 6.1 CVE-2025-1612 A vulnerability was found in Edimax BR-6288ACL 1.30. It has been declared as problematic. This vulnerability affects unknown code of the file wireles… Br 6288acl Firmware Mitigation only Fix from $1,6002025-02-24 MEDIUM 6.1 CVE-2025-1597 A vulnerability was found in SourceCodester Best Church Management Software 1.0. It has been classified as problematic. Affected is an unknown functi… Best Church Management Software No fix yet Fix from $1,6002025-02-23 MEDIUM 6.1 CVE-2025-1592 A vulnerability was found in SourceCodester Best Employee Management System 1.0. It has been rated as problematic. Affected by this issue is some unk… Best Employee Management System Mitigation only Fix from $1,6002025-02-23 MEDIUM 6.1 CVE-2025-1591 A vulnerability was found in SourceCodester Employee Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an… Employee Management System Mitigation only Fix from $1,6002025-02-23 MEDIUM 6.1 CVE-2025-1589 A vulnerability was found in SourceCodester E-Learning System 1.0 and classified as problematic. This issue affects some unknown processing of the fi… E Learning System Mitigation only Fix from $1,6002025-02-23 MEDIUM 6.1 CVE-2025-1586 A vulnerability was found in code-projects Blood Bank System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the… Blood Bank System No fix yet Fix from $1,6002025-02-23 MEDIUM 5.4 CVE-2025-1585 A vulnerability, which was classified as problematic, has been found in otale tale up to 2.0.5. This issue affects the function OptionsService of the… Tale after 2.0.5 Fix from $1,6002025-02-23 MEDIUM 6.1 CVE-2025-1579 A vulnerability was found in code-projects Blood Bank System 1.0 and classified as problematic. This issue affects some unknown processing of the fil… Blood Bank System No fix yet Fix from $1,6002025-02-23 MEDIUM 5.4 CVE-2025-1577 A vulnerability, which was classified as problematic, has been found in code-projects Blood Bank System 1.0. Affected by this issue is some unknown f… Blood Bank System No fix yet Fix from $1,6002025-02-23 CRITICAL 9.8 CVE-2025-1510 The The Custom Post Type Date Archives plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.7.… Custom Post Type Date Archives after 2.7.1 Fix from $2,3002025-02-22 CRITICAL 9.8 CVE-2025-1509 The The Show Me The Cookies plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.0. This is du… Show Me The Cookies Mitigation only Fix from $2,3002025-02-22