1.3

CVSS4.0

CVE-2025-44013 - QTS, QuTS hero

A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versi…

πŸ“… Published: Jan. 2, 2026, 2:52 p.m. πŸ”„ Last Modified: Jan. 5, 2026, 8:22 p.m.

2.2

CVSS4.0

CVE-2025-62857 - QuMagie

A cross-site scripting (XSS) vulnerability has been reported to affect QuMagie. The remote attackers can then exploit the vulnerability to bypass security mechanisms or read application data. We have already fixed the vulnerability in the following version: QuMagie 2.8.1 and later

πŸ“… Published: Jan. 2, 2026, 2:51 p.m. πŸ”„ Last Modified: Jan. 5, 2026, 8:39 p.m.

5.1

CVSS4.0

CVE-2025-15438 - PluXml Media Management medias.php __destruct deserialization

A vulnerability was determined in PluXml up to 5.8.22. Affected is the function FileCookieJar::__destruct of the file core/admin/medias.php of the component Media Management Module. Executing a manipulation of the argument File can lead to deserialization. The attack can be launched remotely. The e…

πŸ“… Published: Jan. 2, 2026, 2:32 p.m. πŸ”„ Last Modified: Feb. 27, 2026, 3:45 a.m.

6.9

CVSS4.0

CVE-2026-0565 - code-projects Content Management System delete.php sql injection

A weakness has been identified in code-projects Content Management System 1.0. This issue affects some unknown processing of the file /admin/delete.php. Executing a manipulation of the argument del can lead to sql injection. The attack can be executed remotely. The exploit has been made available t…

πŸ“… Published: Jan. 2, 2026, 2:02 p.m. πŸ”„ Last Modified: April 18, 2026, 8:45 a.m.

5.3

CVSS4.0

CVE-2026-0547 - PHPGurukul Online Course Registration Student Registration edit-student-profile.php unrestricted up…

A vulnerability was found in PHPGurukul Online Course Registration up to 3.1. This issue affects some unknown processing of the file /admin/edit-student-profile.php of the component Student Registration Page. The manipulation of the argument photo results in unrestricted upload. The attack may be l…

πŸ“… Published: Jan. 2, 2026, 9:32 a.m. πŸ”„ Last Modified: April 18, 2026, 8:45 a.m.

6.9

CVSS4.0

CVE-2026-0546 - code-projects Content Management System search.php sql injection

A vulnerability was determined in code-projects Content Management System 1.0. This impacts an unknown function of the file search.php. This manipulation of the argument Value causes sql injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be…

πŸ“… Published: Jan. 2, 2026, 9:02 a.m. πŸ”„ Last Modified: April 18, 2026, 8:45 a.m.

0.0

CVE-2026-21645 -

Not used

πŸ“… Published: Jan. 2, 2026, 8:41 a.m. πŸ”„ Last Modified: Jan. 3, 2026, 3:55 a.m.

0.0

CVE-2026-21651 -

Not used

πŸ“… Published: Jan. 2, 2026, 8:41 a.m. πŸ”„ Last Modified: Jan. 3, 2026, 3:55 a.m.

0.0

CVE-2026-21647 -

Not used

πŸ“… Published: Jan. 2, 2026, 8:41 a.m. πŸ”„ Last Modified: Jan. 3, 2026, 3:55 a.m.

0.0

CVE-2026-21650 -

Not used

πŸ“… Published: Jan. 2, 2026, 8:41 a.m. πŸ”„ Last Modified: Jan. 3, 2026, 3:55 a.m.
Total resulsts: 347607
Page 2149 of 34,761
Β« previous page Β» next page
Filters