Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 5.4
CVE-2020-22540
Stored Cross-Site Scripting (XSS) vulnerability in Codoforum v4.9, allows attackers to execute arbitrary code and obtain sensitive information via cr…
Codoforum
No fix yet
HIGH 7.2
CVE-2020-22539
An arbitrary file upload vulnerability in the Add Category function of Codoforum v4.9 allows attackers to execute arbitrary code via uploading a craf…
Codoforum
No fix yet
HIGH 7.2
CVE-2022-31854EPSS 32%
Codoforum v5.1 was discovered to contain an arbitrary file upload vulnerability via the logo change option in the admin panel.
Codoforum
No fix yet
MEDIUM 5.4
CVE-2020-25875
A stored cross site scripting (XSS) vulnerability in the 'Smileys' feature of Codoforum v5.0.2 allows authenticated attackers to execute arbitrary we…
Codoforum
No fix yet
MEDIUM 5.4
CVE-2020-25876
A stored cross site scripting (XSS) vulnerability in the 'Pages' feature of Codoforum v5.0.2 allows authenticated attackers to execute arbitrary web …
Codoforum
No fix yet
MEDIUM 5.4
CVE-2020-25879
A stored cross site scripting (XSS) vulnerability in the 'Manage Users' feature of Codoforum v5.0.2 allows authenticated attackers to execute arbitra…
Codoforum
No fix yet
MEDIUM 5.4
CVE-2020-9007
Codoforum 4.8.8 allows self-XSS via the title of a new topic.
Codoforum
No fix yet
MEDIUM 6.1
CVE-2020-5842
Codoforum 4.8.3 allows XSS in the user registration page: via the username field to the index.php?u=/user/register URI. The payload is, for example, …
Codoforum
No fix yet
MEDIUM 5.0
CVE-2014-9261EPSS 9%
The sanitize function in Codoforum 2.5.1 does not properly implement filtering for directory traversal sequences, which allows remote attackers to re…
Codoforum
No fix yet