Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.5
CVE-2026-34381
Admidio is an open-source user management solution. From version 5.0.0 to before version 5.0.8, Admidio relies on adm_my_files/.htaccess to deny dire…
Admidio
5.0.8+
HIGH 7.3
CVE-2026-34384
Admidio is an open-source user management solution. Prior to version 5.0.8, the create_user, assign_member, and assign_user action modes in modules/r…
Admidio
5.0.8+
CRITICAL 9.1
CVE-2026-32817
Admidio is an open-source user management solution. In versions 5.0.0 through 5.0.6, the documents and files module does not verify whether the curre…
Admidio
5.0.7+
HIGH 8.0
CVE-2026-32813
Admidio is an open-source user management solution. Versions 5.0.6 and below are vulnerable to arbitrary SQL Injection through the MyList configurati…
Admidio
5.0.7+
MEDIUM 6.8
CVE-2026-32812
Admidio is an open-source user management solution. In versions 5.0.0 through 5.0.6, unrestricted URL fetch in the SSO Metadata API can result in SSR…
Admidio
5.0.7+
HIGH 8.8
CVE-2026-32756
Admidio is an open-source user management solution. Versions 5.0.6 and below contain a critical unrestricted file upload vulnerability in the Documen…
Admidio
5.0.7+
MEDIUM 5.4
CVE-2026-32757
Admidio is an open-source user management solution. In versions 5.0.6 and below, the eCard send handler uses a raw $_POST['ecard_message'] value inst…
Admidio
5.0.7+
MEDIUM 6.5
CVE-2026-32818
Admidio is an open-source user management solution. In versions 5.0.0 through 5.0.6, the forum module in Admidio does not verify whether the current …
Admidio
5.0.7+
MEDIUM 5.7
CVE-2026-32755
Admidio is an open-source user management solution. In versions 5.0.6 and below, the save_membership action in modules/profile/profile_function.php s…
Admidio
5.0.7+
MEDIUM 5.7
CVE-2026-32816
Admidio is an open-source user management solution. In versions 5.0.0 through 5.0.6, the delete, activate, and deactivate modes in modules/groups-rol…
Admidio
5.0.7+
MEDIUM 5.4
CVE-2026-30927
Admidio is an open-source user management solution. Prior to 5.0.6, in modules/events/events_function.php, the event participation logic allows any u…
Admidio
5.0.6+
HIGH 7.2
CVE-2025-62617
Admidio is an open-source user management solution. Prior to version 4.3.17, an authenticated SQL injection vulnerability exists in the member assign…
Admidio
4.3.17+
HIGH 8.8
CVE-2024-37906
Admidio is a free, open source user management system for websites of organizations and groups. In Admidio before version 4.3.9, there is an SQL Inje…
Admidio
4.3.9+
HIGH 8.8
CVE-2024-38529
Admidio is a free, open source user management system for websites of organizations and groups. In Admidio before version 4.3.10, there is a Remote C…
Admidio
4.3.10+
MEDIUM 6.1
CVE-2023-47380
Admidio v4.2.12 and below is vulnerable to Cross Site Scripting (XSS).
Admidio
Patch available
MEDIUM 6.5
CVE-2023-4190
Insufficient Session Expiration in GitHub repository admidio/admidio prior to 4.2.11.
Admidio
4.2.11+
HIGH 7.2
CVE-2023-3692
Unrestricted Upload of File with Dangerous Type in GitHub repository admidio/admidio prior to 4.2.10.
Admidio
4.2.10+
HIGH 7.8
CVE-2023-3302
Improper Neutralization of Formula Elements in a CSV File in GitHub repository admidio/admidio prior to 4.2.9.
Admidio
4.2.9+
MEDIUM 5.4
CVE-2023-3304
Improper Access Control in GitHub repository admidio/admidio prior to 4.2.9.
Admidio
4.2.9+
MEDIUM 5.4
CVE-2023-3109
Cross-site Scripting (XSS) - Stored in GitHub repository admidio/admidio prior to 4.2.8.
Admidio
4.2.8+
MEDIUM 5.4
CVE-2022-23896
Admidio 4.1.2 version is affected by stored cross-site scripting (XSS).
Admidio
4.1.3+
HIGH 7.1
CVE-2022-0991
Insufficient Session Expiration in GitHub repository admidio/admidio prior to 4.1.9.
Admidio
4.1.9+
MEDIUM 6.1
CVE-2021-43810EPSS 6%
Admidio is a free open source user management system for websites of organizations and groups. A cross-site scripting vulnerability is present in Adm…
Admidio
4.0.12+
HIGH 8.8
CVE-2021-32630
Admidio is a free, open source user management system for websites of organizations and groups. In Admidio before version 4.0.4, there is an authenti…
Admidio
4.0.4+
HIGH 7.5
CVE-2020-11004
SQL Injection was discovered in Admidio before version 3.3.13. The main cookie parameter is concatenated into a SQL query without any input validatio…
Admidio
3.3.13+
HIGH 7.2
CVE-2017-6492
SQL Injection was discovered in adm_program/modules/dates/dates_function.php in Admidio 3.2.5. The POST parameter dat_cat_id is concatenated into a S…
Admidio
No fix yet
MEDIUM 5.0
CVE-2008-5209
Directory traversal vulnerability in modules/download/get_file.php in Admidio 1.4.8 allows remote attackers to read arbitrary files via a .. (dot dot…
Admidio
Patch available