Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

59,162 CVEs

CVEs (59,162, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 51–75 of 59,162 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2025-49130 NONE Patched — 2025-06-09 Laravel Translation Manager is a package to manage Laravel translation files. Prior to version 0.6.8, the application is vulnerable to Cross-Site Scripting (XSS) attacks du…
CVE-2025-49131 MEDIUM Patched 6.3 2025-06-09 FastGPT is an open-source project that provides a platform for building, deploying, and operating AI-driven workflows and conversational agents. The Sandbox container (fast…
CVE-2025-5877 MEDIUM 6.3 2025-06-09 A vulnerability, which was classified as problematic, has been found in Fengoffice Feng Office 3.2.2.1. Affected by this issue is some unknown functionality of the file /ap…
CVE-2025-5879 LOW 3.5 2025-06-09 A vulnerability, which was classified as problematic, was found in WuKongOpenSource WukongCRM 9.0. This affects an unknown part of the file AdminSysConfigController.java of…
CVE-2025-5880 MEDIUM 4.3 2025-06-09 A vulnerability has been found in Whistle 2.9.98 and classified as problematic. This vulnerability affects unknown code of the file /cgi-bin/sessions/get-temp-file. The man…
CVE-2025-5881 MEDIUM 6.3 2025-06-09 A vulnerability was found in code-projects Chat System up to 1.0 and classified as critical. This issue affects some unknown processing of the file /user/confirm_password.p…
CVE-2025-5884 LOW Patched 3.5 2025-06-09 A vulnerability, which was classified as problematic, was found in Konica Minolta bizhub up to 20250202. This affects an unknown part of the component Display MFP Informati…
CVE-2025-5885 MEDIUM Patched 4.3 2025-06-09 A vulnerability has been found in Konica Minolta bizhub up to 20250202 and classified as problematic. This vulnerability affects unknown code. The manipulation leads to cro…
CVE-2023-25999 HIGH 8.1 2025-06-09 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in snstheme BodyCenter - Gym, Fitness WooCommerce Word…
CVE-2023-26005 HIGH 8.1 2025-06-09 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in BZOTheme Fitrush allows PHP Local File Inclusion. T…
CVE-2025-23974 NONE &mdash; 2025-06-09 Incorrect Privilege Assignment vulnerability in ifkooo One-Login one-login allows Privilege Escalation.This issue affects One-Login: from n/a through <= 1.4.
CVE-2025-24767 NONE &mdash; 2025-06-09 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in facturaone TicketBAI Facturas para WooCommerce wp-ticketbai allows Bli&hellip;
CVE-2025-24768 NONE &mdash; 2025-06-09 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in snstheme Nitan snsnitan allows PHP Local File Inclu&hellip;
CVE-2025-24770 NONE &mdash; 2025-06-09 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in BZOTheme CraftXtore bw-craftxtore allows PHP Local &hellip;
CVE-2025-26592 NONE &mdash; 2025-06-09 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Lab lab allows PHP Local File Inclusion&hellip;
CVE-2025-27362 NONE &mdash; 2025-06-09 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in BZOTheme Petito bw-petito allows PHP Local File Inc&hellip;
CVE-2025-28888 NONE &mdash; 2025-06-09 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in BZOTheme GiftXtore bw-giftxtore allows PHP Local Fi&hellip;
CVE-2025-28944 NONE &mdash; 2025-06-09 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in snstheme Avaz snsavaz allows PHP Local File Inclusi&hellip;
CVE-2025-28945 NONE &mdash; 2025-06-09 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in snstheme Valen - Sport, Fashion WooCommerce WordPre&hellip;
CVE-2025-28992 NONE &mdash; 2025-06-09 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in snstheme SNS Anton snsanton allows PHP Local File I&hellip;
CVE-2025-31019 NONE &mdash; 2025-06-09 Authentication Bypass Using an Alternate Path or Channel vulnerability in miniOrange Password Policy Manager password-policy-manager allows Authentication Abuse.This issue &hellip;
CVE-2025-31022 NONE &mdash; 2025-06-09 Authentication Bypass Using an Alternate Path or Channel vulnerability in PayU India PayU India payu-india allows Authentication Abuse.This issue affects PayU India: from n&hellip;
CVE-2025-31039 NONE &mdash; 2025-06-09 Improper Restriction of XML External Entity Reference vulnerability in pixelgrade Category Icon category-icon allows XML Entity Linking.This issue affects Category Icon: fr&hellip;
CVE-2025-31045 NONE &mdash; 2025-06-09 Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in elfsight elfsight Contact Form widget elfsight-contact-form allows Retrieve Embe&hellip;
CVE-2025-31050 NONE &mdash; 2025-06-09 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in appthaplugins Apptha Slider Gallery apptha-slider-gallery allows Path Traver&hellip;