Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.5
CVE-2025-28097
OneNav 1.1.0 is vulnerable to Cross Site Scripting (XSS) in custom headers.
Onenav
No fix yet
MEDIUM 5.4
CVE-2025-28096
OneNav 1.1.0 is vulnerable to Server-Side Request Forgery (SSRF) in custom headers.
Onenav
No fix yet
MEDIUM 5.3
CVE-2022-26276
An issue in index.php of OneNav v0.9.14 allows attackers to perform directory traversal.
Onenav
Mitigation only
HIGH 7.5
CVE-2021-38712
OneNav 0.9.12 allows Information Disclosure of the onenav.db3 contents. NOTE: the vendor's recommended solution is to block the access via an NGINX c…
Onenav
No fix yet
MEDIUM 5.4
CVE-2021-38138
OneNav beta 0.9.12 allows XSS via the Add Link feature. NOTE: the vendor's position is that there intentionally is not any XSS protection at present,…
Onenav
No fix yet