Unauthenticated Local File Inclusion in Imba
Unauthenticated Cross Site Scripting (XSS) in Avante < 3.0.5 versions.
Deserialization of Untrusted Data vulnerability in EMV Creatify allows Object Injection. This issue affects Creatify: from n/a through 1.5.
London, United Kingdom, 17th June 2026, CyberNewswire
Socket says the extensions worked as wallpaper tools, but also logged user data, disguised install traffic as Google clicks, and fed ad sites.
Deserialization of Untrusted Data vulnerability in Themeton The Barber Shop allows Object Injection. This issue affects The Barber Shop: from n/a ...
Deserialization of Untrusted Data vulnerability in Themeton Lagom allows Object Injection. This issue affects Lagom: from n/a through 2.0.
Austin, TX, USA, 17th June 2026, CyberNewswire
Unauthenticated SQL Injection in Advanced Ads – Tracking < 3.0.7 versions.
Unauthenticated Insecure Direct Object References (IDOR) in School Management
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.