Anwendungssicherheit

🟠 CVE-2025-11262: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2025-11262: High Schwachstelle

The Link Whisper Free plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the user_id parameter in all versions...

31. Mai 2026 Keine Kommentare
🟠 CVE-2026-10056: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-10056: High Schwachstelle

CORS misconfiguration in the REST API of Network Optix Nx Witness VMS before version 6.1.2, when running in the default...

31. Mai 2026 Keine Kommentare
🟠 CVE-2026-9809: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-9809: High Schwachstelle

A stored Cross-Site Scripting (XSS) vulnerability exists in the Projects component of Mautic 7. When displaying project tags and popovers...

31. Mai 2026 Keine Kommentare
🟠 CVE-2026-45615: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-45615: High Schwachstelle

mouse07410/asn1c is an ASN.1 compiler. In 1.4 and earlier, a memory safety vulnerability was identified in the OER decoding skeleton...

31. Mai 2026 Keine Kommentare
🟠 CVE-2026-44698: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-44698: High Schwachstelle

Home Assistant is open source home automation software that puts local control and privacy first. Prior to 2026.4.1 for iOS...

31. Mai 2026 Keine Kommentare
🟠 CVE-2026-48527: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-48527: High Schwachstelle

HAX CMS helps manage microsite universe with PHP or NodeJs backends. Versions up to and including 26.0.0 are affected by...

31. Mai 2026 Keine Kommentare
🟠 CVE-2026-45578: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-45578: High Schwachstelle

WWBN AVideo is an open source video platform. In 29.0 and earlier, there is a classic shell-metacharacter injection. The YPTSocket...

31. Mai 2026 Keine Kommentare
🟠 CVE-2025-11993: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2025-11993: High Schwachstelle

The WooCommerce Infinite Scroll and Ajax Pagination plugin for WordPress is vulnerable to PHP Object Injection in all versions up...

31. Mai 2026 Keine Kommentare
🔴 CVE-2026-10071: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-10071: Critical Schwachstelle

DreamMaker developed by Interinfo has an Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload and execute web shell...

31. Mai 2026 Keine Kommentare
🔴 CVE-2026-3655: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-3655: Critical Schwachstelle

The OTP Login With Phone Number, OTP Verification plugin for WordPress is vulnerable to authentication bypass in versions 1.8.50 through...

31. Mai 2026 Keine Kommentare