Vulnerability index

Browse CVEs

47 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.2 CVE-2026-39276 The template upload feature in Emlog Pro v2.6.9 has a path traversal vulnerability, allowing authenticated administrators to execute arbitrary PHP co… Emlog No fix yet Fix from $1,9502026-05-29 MEDIUM 5.4 CVE-2026-21432 Emlog is an open source website building system. Version 2.5.23 has a stored cross-site scripting vulnerability that can lead to account takeover, in… Emlog No fix yet Fix from $1,6002026-01-02 CRITICAL 9.3 CVE-2026-21430 Emlog is an open source website building system. In version 2.5.23, article creation functionality is vulnerable to cross-site request forgery (CSRF)… Emlog No fix yet Fix from $2,3002026-01-02 MEDIUM 5.4 CVE-2026-21431 Emlog is an open source website building system. Version 2.5.23 has a stored cross-site scripting vulnerability in the `Resource media library ` func… Emlog No fix yet Fix from $1,6002026-01-02 CRITICAL 9.1 CVE-2025-61318 Emlog Pro 2.5.20 has an arbitrary file deletion vulnerability. This vulnerability stems from the admin/template.php component and the admin/plugin.ph… Emlog No fix yet Fix from $2,3002025-12-08 MEDIUM 6.1 CVE-2025-60448 A stored Cross-Site Scripting (XSS) vulnerability has been discovered in Emlog Pro 2.5.19. The vulnerability exists due to insufficient validation of… Emlog No fix yet Fix from $1,6002025-10-03 MEDIUM 5.9 CVE-2025-60447 A stored Cross-Site Scripting (XSS) vulnerability has been discovered in Emlog Pro 2.5.19. The vulnerability exists in the email template configurati… Emlog No fix yet Fix from $1,6002025-10-03 HIGH 7.2 CVE-2025-44139 Emlog Pro V2.5.7 is vulnerable to Unrestricted Upload of File with Dangerous Type via /emlog/admin/plugin.php?action=upload_zip Emlog No fix yet Fix from $1,9502025-08-01 CRITICAL 9.8 CVE-2025-5119 A vulnerability has been found in Emlog Pro 2.5.11 and classified as critical. This vulnerability affects unknown code of the file /include/controlle… Emlog No fix yet Fix from $2,3002025-05-23 CRITICAL 9.8 CVE-2025-29401 An arbitrary file upload vulnerability in the component /views/plugin.php of emlog pro v2.5.7 allows attackers to execute arbitrary code via uploadin… Emlog No fix yet Fix from $2,3002025-03-19 HIGH 7.3 CVE-2025-25823 A cross-site scripting (XSS) vulnerability in Emlog Pro v2.5.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payl… Emlog Mitigation only Fix from $1,9502025-02-26 HIGH 7.1 CVE-2025-25825 A cross-site scripting (XSS) vulnerability in Emlog Pro v2.5.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payl… Emlog Mitigation only Fix from $1,9502025-02-26 MEDIUM 6.8 CVE-2025-25827 A Server-Side Request Forgery (SSRF) in the component sort.php of Emlog Pro v2.5.4 allows attackers to scan local and internal ports via supplying a … Emlog Mitigation only Fix from $1,6002025-02-26 MEDIUM 5.1 CVE-2025-25818 A cross-site scripting (XSS) vulnerability in Emlog Pro v2.5.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payl… Emlog Mitigation only Fix from $1,6002025-02-26 CRITICAL 9.8 CVE-2025-25783 An arbitrary file upload vulnerability in the component admin\plugin.php of Emlog Pro v2.5.3 allows attackers to execute arbitrary code via uploading… Emlog Mitigation only Fix from $2,3002025-02-26 MEDIUM 5.4 CVE-2024-13135 A vulnerability has been found in Emlog Pro 2.4.3 and classified as problematic. Affected by this vulnerability is an unknown functionality of the fi… Emlog No fix yet Fix from $1,6002025-01-05 MEDIUM 6.5 CVE-2024-31612 Emlog pro2.3 is vulnerable to Cross Site Request Forgery (CSRF) via twitter.php which can be used with a XSS vulnerability to access administrator in… Emlog No fix yet Fix from $1,6002024-06-10 HIGH 8.1 CVE-2024-5044 A vulnerability was found in Emlog Pro 2.3.4. It has been classified as problematic. This affects an unknown part of the component Cookie Handler. Th… Emlog No fix yet Fix from $1,9502024-05-17 HIGH 8.8 CVE-2024-5043 A vulnerability was found in Emlog Pro 2.3.4 and classified as critical. Affected by this issue is some unknown functionality of the file admin/setti… Emlog No fix yet Fix from $1,9502024-05-17 MEDIUM 6.3 CVE-2024-33752 An arbitrary file upload vulnerability exists in emlog pro 2.3.0 and pro 2.3.2 at admin/views/plugin.php that could be exploited by a remote attacker… Emlog No fix yet Fix from $1,6002024-05-06 MEDIUM 5.4 CVE-2024-3763 A vulnerability was found in Emlog Pro 2.2.10. It has been rated as problematic. This issue affects some unknown processing of the file /admin/tag.ph… Emlog No fix yet Fix from $1,6002024-04-14 MEDIUM 5.4 CVE-2024-3762 A vulnerability was found in Emlog Pro 2.2.10. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/twitte… Emlog No fix yet Fix from $1,6002024-04-14 MEDIUM 6.1 CVE-2024-31013 Cross Site Scripting (XSS) vulnerability in emlog version Pro 2.3, allow remote attackers to execute arbitrary code via a crafted payload to the bott… Emlog No fix yet Fix from $1,6002024-04-03 MEDIUM 6.1 CVE-2024-25381 There is a Stored XSS Vulnerability in Emlog Pro 2.2.8 Article Publishing, due to non-filtering of quoted content. Emlog No fix yet Fix from $1,6002024-02-21 MEDIUM 6.1 CVE-2023-41619 Emlog Pro v2.1.14 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /admin/article.php?action=write. Emlog No fix yet Fix from $1,6002024-01-16 MEDIUM 6.1 CVE-2023-41618 Emlog Pro v2.1.14 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the component /admin/article.php?active_savedra… Emlog No fix yet Fix from $1,6002023-12-14 MEDIUM 6.1 CVE-2023-41621 A Cross Site Scripting (XSS) vulnerability was discovered in Emlog Pro v2.1.14 via the component /admin/store.php. Emlog No fix yet Fix from $1,6002023-12-13 HIGH 7.2 CVE-2023-41623 Emlog version pro2.1.14 was discovered to contain a SQL injection vulnerability via the uid parameter at /admin/media.php. Emlog No fix yet Fix from $1,9502023-12-12 CRITICAL 9.8 CVE-2023-44973 An arbitrary file upload vulnerability in the component /content/templates/ of Emlog Pro v2.2.0 allows attackers to execute arbitrary code via upload… Emlog No fix yet Fix from $2,3002023-10-03 CRITICAL 9.8 CVE-2023-44974EPSS 19% An arbitrary file upload vulnerability in the component /admin/plugin.php of Emlog Pro v2.2.0 allows attackers to execute arbitrary code via uploadin… Emlog No fix yet Fix from $2,3002023-10-03