Vulnerability index

Browse CVEs

47 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Emlog HIGH 7.2
CVE-2026-39276

The template upload feature in Emlog Pro v2.6.9 has a path traversal vulnerability, allowing authenticated administrators to execute arbitrary PHP co…

No fix yet
Fix from $1,950 2026-05-29
Emlog MEDIUM 5.4
CVE-2026-21432

Emlog is an open source website building system. Version 2.5.23 has a stored cross-site scripting vulnerability that can lead to account takeover, in…

No fix yet
Fix from $1,600 2026-01-02
Emlog CRITICAL 9.3
CVE-2026-21430

Emlog is an open source website building system. In version 2.5.23, article creation functionality is vulnerable to cross-site request forgery (CSRF)…

No fix yet
Fix from $2,300 2026-01-02
Emlog MEDIUM 5.4
CVE-2026-21431

Emlog is an open source website building system. Version 2.5.23 has a stored cross-site scripting vulnerability in the `Resource media library ` func…

No fix yet
Fix from $1,600 2026-01-02
Emlog CRITICAL 9.1
CVE-2025-61318

Emlog Pro 2.5.20 has an arbitrary file deletion vulnerability. This vulnerability stems from the admin/template.php component and the admin/plugin.ph…

No fix yet
Fix from $2,300 2025-12-08
Emlog MEDIUM 6.1
CVE-2025-60448

A stored Cross-Site Scripting (XSS) vulnerability has been discovered in Emlog Pro 2.5.19. The vulnerability exists due to insufficient validation of…

No fix yet
Fix from $1,600 2025-10-03
Emlog MEDIUM 5.9
CVE-2025-60447

A stored Cross-Site Scripting (XSS) vulnerability has been discovered in Emlog Pro 2.5.19. The vulnerability exists in the email template configurati…

No fix yet
Fix from $1,600 2025-10-03
Emlog HIGH 7.2
CVE-2025-44139

Emlog Pro V2.5.7 is vulnerable to Unrestricted Upload of File with Dangerous Type via /emlog/admin/plugin.php?action=upload_zip

No fix yet
Fix from $1,950 2025-08-01
Emlog CRITICAL 9.8
CVE-2025-5119

A vulnerability has been found in Emlog Pro 2.5.11 and classified as critical. This vulnerability affects unknown code of the file /include/controlle…

No fix yet
Fix from $2,300 2025-05-23
Emlog CRITICAL 9.8
CVE-2025-29401

An arbitrary file upload vulnerability in the component /views/plugin.php of emlog pro v2.5.7 allows attackers to execute arbitrary code via uploadin…

No fix yet
Fix from $2,300 2025-03-19
Emlog HIGH 7.3
CVE-2025-25823

A cross-site scripting (XSS) vulnerability in Emlog Pro v2.5.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payl…

Mitigation only
Fix from $1,950 2025-02-26
Emlog HIGH 7.1
CVE-2025-25825

A cross-site scripting (XSS) vulnerability in Emlog Pro v2.5.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payl…

Mitigation only
Fix from $1,950 2025-02-26
Emlog MEDIUM 6.8
CVE-2025-25827

A Server-Side Request Forgery (SSRF) in the component sort.php of Emlog Pro v2.5.4 allows attackers to scan local and internal ports via supplying a …

Mitigation only
Fix from $1,600 2025-02-26
Emlog MEDIUM 5.1
CVE-2025-25818

A cross-site scripting (XSS) vulnerability in Emlog Pro v2.5.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payl…

Mitigation only
Fix from $1,600 2025-02-26
Emlog CRITICAL 9.8
CVE-2025-25783

An arbitrary file upload vulnerability in the component admin\plugin.php of Emlog Pro v2.5.3 allows attackers to execute arbitrary code via uploading…

Mitigation only
Fix from $2,300 2025-02-26
Emlog MEDIUM 5.4
CVE-2024-13135

A vulnerability has been found in Emlog Pro 2.4.3 and classified as problematic. Affected by this vulnerability is an unknown functionality of the fi…

No fix yet
Fix from $1,600 2025-01-05
Emlog MEDIUM 6.5
CVE-2024-31612

Emlog pro2.3 is vulnerable to Cross Site Request Forgery (CSRF) via twitter.php which can be used with a XSS vulnerability to access administrator in…

No fix yet
Fix from $1,600 2024-06-10
Emlog HIGH 8.1
CVE-2024-5044

A vulnerability was found in Emlog Pro 2.3.4. It has been classified as problematic. This affects an unknown part of the component Cookie Handler. Th…

No fix yet
Fix from $1,950 2024-05-17
Emlog HIGH 8.8
CVE-2024-5043

A vulnerability was found in Emlog Pro 2.3.4 and classified as critical. Affected by this issue is some unknown functionality of the file admin/setti…

No fix yet
Fix from $1,950 2024-05-17
Emlog MEDIUM 6.3
CVE-2024-33752

An arbitrary file upload vulnerability exists in emlog pro 2.3.0 and pro 2.3.2 at admin/views/plugin.php that could be exploited by a remote attacker…

No fix yet
Fix from $1,600 2024-05-06
Emlog MEDIUM 5.4
CVE-2024-3763

A vulnerability was found in Emlog Pro 2.2.10. It has been rated as problematic. This issue affects some unknown processing of the file /admin/tag.ph…

No fix yet
Fix from $1,600 2024-04-14
Emlog MEDIUM 5.4
CVE-2024-3762

A vulnerability was found in Emlog Pro 2.2.10. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/twitte…

No fix yet
Fix from $1,600 2024-04-14
Emlog MEDIUM 6.1
CVE-2024-31013

Cross Site Scripting (XSS) vulnerability in emlog version Pro 2.3, allow remote attackers to execute arbitrary code via a crafted payload to the bott…

No fix yet
Fix from $1,600 2024-04-03
Emlog MEDIUM 6.1
CVE-2024-25381

There is a Stored XSS Vulnerability in Emlog Pro 2.2.8 Article Publishing, due to non-filtering of quoted content.

No fix yet
Fix from $1,600 2024-02-21
Emlog MEDIUM 6.1
CVE-2023-41619

Emlog Pro v2.1.14 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /admin/article.php?action=write.

No fix yet
Fix from $1,600 2024-01-16
Emlog MEDIUM 6.1
CVE-2023-41618

Emlog Pro v2.1.14 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the component /admin/article.php?active_savedra…

No fix yet
Fix from $1,600 2023-12-14
Emlog MEDIUM 6.1
CVE-2023-41621

A Cross Site Scripting (XSS) vulnerability was discovered in Emlog Pro v2.1.14 via the component /admin/store.php.

No fix yet
Fix from $1,600 2023-12-13
Emlog HIGH 7.2
CVE-2023-41623

Emlog version pro2.1.14 was discovered to contain a SQL injection vulnerability via the uid parameter at /admin/media.php.

No fix yet
Fix from $1,950 2023-12-12
Emlog CRITICAL 9.8
CVE-2023-44973

An arbitrary file upload vulnerability in the component /content/templates/ of Emlog Pro v2.2.0 allows attackers to execute arbitrary code via upload…

No fix yet
Fix from $2,300 2023-10-03
Emlog CRITICAL 9.8
CVE-2023-44974EPSS 19%

An arbitrary file upload vulnerability in the component /admin/plugin.php of Emlog Pro v2.2.0 allows attackers to execute arbitrary code via uploadin…

No fix yet
Fix from $2,300 2023-10-03