| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-11175 | Public CMS Voting Management save cross site scripting | Public | CMS | Low | 3.5 | 2024-11-13 15:31:27 | Deep Dive |
| CVE-2024-10761 | Umbraco CMS Dashboard frame cross site scripting | Umbraco | CMS | Medium | 4.3 | 2024-11-04 05:00:07 | Deep Dive |
| CVE-2024-10479 | LinZhaoguan pb-cms Theme Management Module admin#themes cross site scripting | LinZhaoguan | pb-cms | Low | 2.4 | 2024-10-29 01:00:15 | Deep Dive |
| CVE-2024-10478 | LinZhaoguan pb-cms Edit Article edit cross site scripting | LinZhaoguan | pb-cms | Low | 2.4 | 2024-10-29 00:31:15 | Deep Dive |
| CVE-2024-10477 | LinZhaoguan pb-cms Permission Management Page admin#permissions cross site scripting | LinZhaoguan | pb-cms | Low | 2.4 | 2024-10-29 00:31:08 | Deep Dive |
| CVE-2024-48929 | Umbraco CMS Has Incomplete Server Termination During Explicit Sign-Out | umbraco | Umbraco-CMS | Medium | 4.2 | 2024-10-22 15:54:24 | Deep Dive |
| CVE-2024-48927 | Potential Code Execution Risk When Viewing SVG Files in Full Screen in Backoffice | umbraco | Umbraco-CMS | Medium | 4.6 | 2024-10-22 15:50:47 | Deep Dive |
| CVE-2024-48926 | Umbraco CMS logout page displayed before session expiration | umbraco | Umbraco-CMS | Medium | 4.2 | 2024-10-22 15:47:33 | Deep Dive |
| CVE-2024-48925 | Umbraco CMS Improper Access Control Vulnerability Allows Low-Privilege Users to Access Webhook API | umbraco | Umbraco-CMS | None | 0.0 | 2024-10-22 15:27:24 | Deep Dive |
| CVE-2024-47819 | Umbraco CMS vulnerable to stored Cross-site Scripting in the "dictionary name" on Dictionary section | umbraco | Umbraco-CMS | Medium | 4.2 | 2024-10-22 15:25:04 | Deep Dive |
| CVE-2024-9904 | 07FLYCMS/07FLY-CMS/07FlyCRM pictureUpload unrestricted upload | - | 07FLYCMS | Medium | 4.7 | 2024-10-13 01:31:04 | Deep Dive |
| CVE-2024-9903 | 07FLYCMS/07FLY-CMS/07FlyCRM fileUpload unrestricted upload | - | 07FLYCMS | Medium | 4.7 | 2024-10-12 23:00:06 | Deep Dive |
| CVE-2024-9856 | 07FLYCMS/07FLY-CMS/07FlyCRM System Settings Page cross site scripting | - | 07FLYCMS | Low | 2.4 | 2024-10-11 12:31:07 | Deep Dive |
| CVE-2024-9855 | 07FLYCMS/07FLY-CMS/07FlyCRM Module Plug-In sysmodule_1 uploadFile unrestricted upload | - | 07FLYCMS | Medium | 4.7 | 2024-10-11 12:31:05 | Deep Dive |
| CVE-2024-4658 | SQLi in TE Informatics' Nova CMS | TE Informatics | Nova CMS | - | - | 2024-10-10 13:38:18 | Deep Dive |
| CVE-2024-9405 | Pluck 安全漏洞 | Pluck CMS | Pluck CMS | Medium | 5.3 | 2024-10-01 11:22:50 | Deep Dive |
| CVE-2024-9294 | dingfanzu CMS saveNewPwd.php sql injection | dingfanzu | CMS | Medium | 6.3 | 2024-09-27 21:31:04 | Deep Dive |
| CVE-2024-7398 | Concrete CMS Stored XSS Vulnerability in Calendar Event Addition Feature | Concrete CMS | Concrete CMS | - | - | 2024-09-24 21:30:37 | Deep Dive |
| CVE-2024-8291 | Concrete CMS Stored XSS in Image Editor Background Color | Concrete CMS | Concrete CMS | - | - | 2024-09-24 21:17:01 | Deep Dive |
| CVE-2024-8653 | Netcat CMS: multiple reflected cross-site scripting vulnerabilities in netshop module | NetCat | NetCat CMS | - | - | 2024-09-19 16:39:23 | Deep Dive |