Anwendungssicherheit
🟠 CVE-2025-11262: High Schwachstelle
The Link Whisper Free plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the user_id parameter in all versions...
🟠 CVE-2026-10056: High Schwachstelle
CORS misconfiguration in the REST API of Network Optix Nx Witness VMS before version 6.1.2, when running in the default...
🟠 CVE-2026-9809: High Schwachstelle
A stored Cross-Site Scripting (XSS) vulnerability exists in the Projects component of Mautic 7. When displaying project tags and popovers...
🟠 CVE-2026-45615: High Schwachstelle
mouse07410/asn1c is an ASN.1 compiler. In 1.4 and earlier, a memory safety vulnerability was identified in the OER decoding skeleton...
🟠 CVE-2026-44698: High Schwachstelle
Home Assistant is open source home automation software that puts local control and privacy first. Prior to 2026.4.1 for iOS...
🟠 CVE-2026-48527: High Schwachstelle
HAX CMS helps manage microsite universe with PHP or NodeJs backends. Versions up to and including 26.0.0 are affected by...
🟠 CVE-2026-45578: High Schwachstelle
WWBN AVideo is an open source video platform. In 29.0 and earlier, there is a classic shell-metacharacter injection. The YPTSocket...
🟠 CVE-2025-11993: High Schwachstelle
The WooCommerce Infinite Scroll and Ajax Pagination plugin for WordPress is vulnerable to PHP Object Injection in all versions up...
🔴 CVE-2026-10071: Critical Schwachstelle
DreamMaker developed by Interinfo has an Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload and execute web shell...
🔴 CVE-2026-3655: Critical Schwachstelle
The OTP Login With Phone Number, OTP Verification plugin for WordPress is vulnerable to authentication bypass in versions 1.8.50 through...