Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 8.8
CVE-2024-58287
reNgine 2.2.0 contains a command injection vulnerability in the nmap_cmd parameter of scan engine configuration that allows authenticated attackers t…
Rengine
No fix yet
MEDIUM 6.1
CVE-2025-61319
ReNgine thru 2.2.0 is vulnerable to a Stored Cross-Site Scripting (XSS) vulnerability in the Vulnerabilities module. When scanning a target with an X…
Rengine
after 2.2.0
HIGH 8.8
CVE-2025-24968
reNgine is an automated reconnaissance framework for web applications. An unrestricted project deletion vulnerability allows attackers with specific …
Rengine
after 2.2.0
MEDIUM 5.4
CVE-2025-24966
reNgine is an automated reconnaissance framework for web applications. HTML Injection occurs when an application improperly validates or sanitizes us…
Rengine
after 2.2.0
MEDIUM 5.4
CVE-2025-24967
reNgine is an automated reconnaissance framework for web applications. A stored cross-site scripting (XSS) vulnerability exists in the admin panel's …
Rengine
after 2.2.0
HIGH 8.8
CVE-2025-24962
reNgine is an automated reconnaissance framework for web applications. In affected versions a user can inject commands via the nmap_cmd parameters. T…
Rengine
Patch available
HIGH 7.5
CVE-2025-24899
reNgine is an automated reconnaissance framework for web applications. A vulnerability was discovered in reNgine, where **an insider attacker with an…
Rengine
2.2.0+
MEDIUM 5.4
CVE-2024-43381
reNgine is an automated reconnaissance framework for web applications. Versions 2.1.2 and prior are susceptible to Stored Cross-Site Scripting (XSS) …
Rengine
2.1.3+
HIGH 8.8
CVE-2023-50094EPSS 14%
reNgine before 2.1.2 allows OS Command Injection if an adversary has a valid session ID. The attack places shell metacharacters in an api/tools/waf_d…
Rengine
after 2.0.2
CRITICAL 9.8
CVE-2022-36566
Rengine v1.3.0 was discovered to contain a command injection vulnerability via the scan engine function.
Rengine
No fix yet
CRITICAL 9.8
CVE-2022-28995
Rengine v1.0.2 was discovered to contain a remote code execution (RCE) vulnerability via the yaml configuration function.
Rengine
No fix yet
CRITICAL 9.8
CVE-2021-38606
reNgine through 0.5 relies on a predictable directory name.
Rengine
after 0.5