FacturaScripts versions prior to 2025.81 suffer from a remote SQL injection vulnerability in the API ORDER BY clause...
ChurchCRM versions prior to 6.5.3 suffer from a remote SQL injection vulnerability in ConfirmReportEmail.php...
OpenSTAManager versions 2.9.8 and below suffer from a remote SQL injection vulnerability in the Prima Nota module...
Cockpit CMS version 2.13.5 is vulnerable to NoSQL operator injection on multiple API endpoints. User-supplied filter objects are forwarded to the M...
OpenSTAManager versions 2.9.8 and below suffer from a remote SQL injection vulnerability in the Scadenzario bulk operations module...
Dolibarr versions 22.0.4 and below suffer from a remote code injection vulnerability via via MAINODTASPDF...
TypiCMS versions prior to 16.1.7 suffer from a persistent cross site scripting via SVG file uploads...
OpenSTAManager versions 2.9.8 and below suffer from a remote SQL injection vulnerability in the Scadenzario Print Template...
ChurchCRM versions 6.4.0 and below suffer from persistent cross site scripting vulnerability in group role name assignment...
Horilla versions 1.3 and below suffer from a remote command execution vulnerability...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.