Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Socialengine CRITICAL 9.8
CVE-2026-41460

SocialEngine versions 7.8.0 and prior contain a SQL injection vulnerability in the /activity/index/get-memberall endpoint where user-supplied input p…

Fix: after 7.8.0
Fix from $2,300 2026-04-23
Socialengine HIGH 8.5
CVE-2026-41461

SocialEngine versions 7.8.0 and prior contain a blind server-side request forgery vulnerability in the /core/link/preview endpoint where user-supplie…

Fix: after 7.8.0
Fix from $1,950 2026-04-23
Socialengine MEDIUM 6.3
CVE-2012-6721

Multiple cross-site request forgery (CSRF) vulnerabilities in the (1) Forum, (2) Event, and (3) Classifieds plugins in SocialEngine before 4.2.4.

Fix: 4.2.4+
Fix from $1,600 2020-02-11
Socialengine MEDIUM 6.1
CVE-2012-6720

Multiple cross-site scripting (XSS) vulnerabilities in SocialEngine before 4.2.4 allow remote attackers to inject arbitrary web script or HTML via th…

Fix: 4.2.4+
Fix from $1,600 2020-02-11
Socialengine HIGH 7.5
CVE-2008-6120

SQL injection vulnerability in profile_comments.php in SocialEngine (SE) 2.7 and earlier allows remote attackers to execute arbitrary SQL commands vi…

Fix: after 2.7
Fix from $1,950 2009-02-11
Socialengine HIGH 7.5
CVE-2008-6121

CRLF injection vulnerability in SocialEngine (SE) 2.7 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response …

Fix: after 2.7
Fix from $1,950 2009-02-11
Socialengine MEDIUM 6.8
CVE-2009-0400

SQL injection vulnerability in blog.php in SocialEngine 3.06 trial allows remote attackers to execute arbitrary SQL commands via the category_id para…

No fix yet
Fix from $1,600 2009-02-03