Vulnerability index

Browse CVEs

12 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2024-58287 reNgine 2.2.0 contains a command injection vulnerability in the nmap_cmd parameter of scan engine configuration that allows authenticated attackers t… Rengine No fix yet Fix from $1,9502025-12-11 MEDIUM 6.1 CVE-2025-61319 ReNgine thru 2.2.0 is vulnerable to a Stored Cross-Site Scripting (XSS) vulnerability in the Vulnerabilities module. When scanning a target with an X… Rengine after 2.2.0 Fix from $1,6002025-10-10 HIGH 8.8 CVE-2025-24968 reNgine is an automated reconnaissance framework for web applications. An unrestricted project deletion vulnerability allows attackers with specific … Rengine after 2.2.0 Fix from $1,9502025-02-04 MEDIUM 5.4 CVE-2025-24966 reNgine is an automated reconnaissance framework for web applications. HTML Injection occurs when an application improperly validates or sanitizes us… Rengine after 2.2.0 Fix from $1,6002025-02-04 MEDIUM 5.4 CVE-2025-24967 reNgine is an automated reconnaissance framework for web applications. A stored cross-site scripting (XSS) vulnerability exists in the admin panel's … Rengine after 2.2.0 Fix from $1,6002025-02-04 HIGH 8.8 CVE-2025-24962 reNgine is an automated reconnaissance framework for web applications. In affected versions a user can inject commands via the nmap_cmd parameters. T… Rengine Patch available Fix from $1,9502025-02-03 HIGH 7.5 CVE-2025-24899 reNgine is an automated reconnaissance framework for web applications. A vulnerability was discovered in reNgine, where **an insider attacker with an… Rengine 2.2.0+ Fix from $1,9502025-02-03 MEDIUM 5.4 CVE-2024-43381 reNgine is an automated reconnaissance framework for web applications. Versions 2.1.2 and prior are susceptible to Stored Cross-Site Scripting (XSS) … Rengine 2.1.3+ Fix from $1,6002024-08-16 HIGH 8.8 CVE-2023-50094EPSS 14% reNgine before 2.1.2 allows OS Command Injection if an adversary has a valid session ID. The attack places shell metacharacters in an api/tools/waf_d… Rengine after 2.0.2 Fix from $1,9502024-01-01 CRITICAL 9.8 CVE-2022-36566 Rengine v1.3.0 was discovered to contain a command injection vulnerability via the scan engine function. Rengine No fix yet Fix from $2,3002022-08-31 CRITICAL 9.8 CVE-2022-28995 Rengine v1.0.2 was discovered to contain a remote code execution (RCE) vulnerability via the yaml configuration function. Rengine No fix yet Fix from $2,3002022-05-20 CRITICAL 9.8 CVE-2021-38606 reNgine through 0.5 relies on a predictable directory name. Rengine after 0.5 Fix from $2,3002021-08-12