FrontAccounting before 2.4.20 contains a SQL injection vulnerability in the Audit Trail report handler that allows authenticated attackers with SA_...
FrontAccounting before 2.4.20 contains a SQL injection vulnerability in the Bank Statement report handler that allows authenticated attackers to ex...
FrontAccounting before 2.4.20 contains a path traversal vulnerability in the attachment upload handler that allows authenticated attackers to execu...
fast-uri versions 2.3.1 through 3.1.2 and 4.0.0 fail to canonicalize Unicode (IDN) hostnames for HTTP-family URLs. The IDN conversion path calls a ...
SzafirHost verifies the downloaded native library archive with one JarFile parser (reading the Central Directory) but extracts native libraries wit...
A flaw was found in the vscode-java extension, which provides Java language support for Visual Studio Code. The extension incorrectly trusts all Ma...
Unauthenticated Cross Site Scripting (XSS) in ARForms
Unauthenticated Cross Site Scripting (XSS) in Landing Page Builder
Unauthenticated Cross Site Scripting (XSS) in Jobify
Unauthenticated Cross Site Scripting (XSS) in Link Whisper Free
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.