InvoicePlane versions 1.6.3 and below suffer from a path traversal vulnerability in the getfile method of the Guest module...
Redaxo versions 5.20.1 and below suffer from a path traversal vulnerability...
OpenSTAManager versions 2.9.8 and below suffer from a remote time-based SQL injection vulnerability in the Article Pricing module...
OpenSTAManager versions 2.9.8 and below suffer from a remote SQL injection vulnerability in ajaxcomplete.php...
Shopware versions greater than or equal to 6.7.0.0 and less than 6.7.6.1 has an improper control related to Twig rendered views...
OpenSTAManager versions 2.9.8 and below suffer from a remote SQL injection vulnerability in ajaxselect.php...
OpenSTAManager versions 2.9.8 and below suffer from a cross site scripting vulnerability in modificaiva.php via the righe parameter...
Authentic 8 has an broken access control that can be leveraged via insecure direct object reference that can lead to PII information disclosure...
ChurchCRM versions 6.5.2 and below suffer from a persistent cross site scripting vulnerability in the person property assignment functionality. Not...
Omega-PSIR suffers from a cross site scripting vulnerability via the lang parameter...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.