4.6

CVSS3.1

CVE-2025-26091 -

A Cross Site Scripting (XSS) vulnerability exists in TeamPasswordManager v12.162.284 and before that could allow a remote attacker to execute arbitrary JavaScript in the web browser of a user, by including a malicious payload into the 'name' parameter when creating a new password in the "My Passwor…

πŸ“… Published: March 4, 2025, midnight πŸ”„ Last Modified: May 21, 2025, 3 p.m.

5.8

CVSS3.1

CVE-2025-26318 -

hb.exe in TSplus Remote Access before 17.30 2024-10-30 allows remote attackers to retrieve a list of all domain accounts currently connected to the application.

πŸ“… Published: March 4, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.2

CVSS3.1

CVE-2025-25426 -

yshopmall <=v1.9.0 is vulnerable to SQL Injection in the image listing interface.

πŸ“… Published: March 4, 2025, midnight πŸ”„ Last Modified: June 12, 2025, 8:34 p.m.

9.8

CVSS3.1

CVE-2025-26136 -

A SQL injection vulnerability exists in mysiteforme versions prior to 2025.01.1.

πŸ“… Published: March 4, 2025, midnight πŸ”„ Last Modified: June 24, 2025, 12:54 a.m.

10

CVSS3.1

CVE-2024-50704 -

Unauthenticated remote code execution vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to execute arbitrary code via a specially crafted HTTP POST request.

πŸ“… Published: March 4, 2025, midnight πŸ”„ Last Modified: May 28, 2025, 5:28 p.m.

9.8

CVSS3.1

CVE-2025-26319 -

FlowiseAI Flowise v2.2.6 was discovered to contain an arbitrary file upload vulnerability in /api/v1/attachments.

πŸ“… Published: March 4, 2025, midnight πŸ”„ Last Modified: June 24, 2025, 12:50 a.m.

7.1

CVSS3.1

CVE-2024-50705 -

Unauthenticated reflected cross-site scripting (XSS) vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to execute arbitrary scripts via the page parameter.

πŸ“… Published: March 4, 2025, midnight πŸ”„ Last Modified: May 21, 2025, 3:42 p.m.

6.5

CVSS3.1

CVE-2025-26182 -

An issue in xxyopen novel plus v.4.4.0 and before allows a remote attacker to execute arbitrary code via the PageController.java file

πŸ“… Published: March 4, 2025, midnight πŸ”„ Last Modified: June 24, 2025, 3:30 p.m.

7.8

CVSS3.1

CVE-2020-23438 -

Wondershare filmora 9.2.11 is affected by Trojan Dll hijacking leading to privilege escalation.

πŸ“… Published: March 4, 2025, midnight πŸ”„ Last Modified: March 26, 2025, 8:15 p.m.

5.3

CVSS4.0

CVE-2025-1891 - shishuocms cross-site request forgery

A vulnerability was found in shishuocms 1.1 and classified as problematic. This issue affects some unknown processing. The manipulation leads to cross-site request forgery. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

πŸ“… Published: March 3, 2025, 11:31 p.m. πŸ”„ Last Modified: Aug. 28, 2025, 3:15 p.m.
Total resulsts: 346554
Page 6206 of 34,656
Β« previous page Β» next page
Filters