| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-8301 | dingfanzu CMS checkin.php sql injection | dingfanzu | CMS | High | 7.3 | 2024-08-29 13:00:06 | Deep Dive |
| CVE-2024-7608 | Trellix多款产品 安全漏洞 | Trellix | Trellix NX, EX, AX, FX, CMS and IVX | Medium | 5.9 | 2024-08-27 07:40:16 | Deep Dive |
| CVE-2024-27185 | [20240802] - Core - Cache Poisoning in Pagination | Joomla! Project | Joomla! CMS | - | - | 2024-08-20 16:03:58 | Deep Dive |
| CVE-2024-27186 | [20240803] - Core - XSS in HTML Mail Templates | Joomla! Project | Joomla! CMS | - | - | 2024-08-20 16:03:57 | Deep Dive |
| CVE-2024-27184 | [20240801] - Core - Inadequate validation of internal URLs | Joomla! Project | Joomla! CMS | - | - | 2024-08-20 16:03:52 | Deep Dive |
| CVE-2024-40743 | [20240805] - Core - XSS vectors in Outputfilter::strip* methods | Joomla! Project | Joomla! CMS | - | - | 2024-08-20 16:03:45 | Deep Dive |
| CVE-2024-27187 | [20240804] - Core - Improper ACL for backend profile view | Joomla! Project | Joomla! CMS | - | - | 2024-08-20 16:03:44 | Deep Dive |
| CVE-2024-43377 | Umbraco CMS Improper Access Control vulnerability | umbraco | Umbraco-CMS | Medium | 5.4 | 2024-08-20 14:43:45 | Deep Dive |
| CVE-2024-43376 | Umbraco CMS vulnerable to Generation of Error Message Containing Sensitive Information | umbraco | Umbraco-CMS | Medium | 4.3 | 2024-08-20 14:40:20 | Deep Dive |
| CVE-2024-43303 | WordPress White Label CMS plugin <= 2.7.4 - Reflected Cross Site Scripting (XSS) vulnerability | videousermanuals.com | White Label CMS | High | 7.1 | 2024-08-18 21:09:01 | Deep Dive |
| CVE-2024-7729 | CAYIN Technology CMS - Sensitive File Download | CAYIN Technology | SMP-2100 | High | 7.5 | 2024-08-14 03:52:44 | Deep Dive |
| CVE-2024-7728 | CAYIN Technology CMS - OS Command Injection | CAYIN Technology | CMS-SE(22.04) | High | 7.2 | 2024-08-14 03:26:51 | Deep Dive |
| CVE-2024-7657 | Gila CMS HTTP POST Request page cross site scripting | Gila | CMS | Low | 3.5 | 2024-08-11 01:31:04 | Deep Dive |
| CVE-2024-4350 | Concrete CMS version 9 below 9.3.3 and below 8.5.18 are vulnerable to Stored XSS in RSS Displayer | Concrete CMS | Concrete CMS | - | - | 2024-08-09 00:37:44 | Deep Dive |
| CVE-2024-7512 | Concrete CMS Stored XSS in Board instances | Concrete CMS | Concrete CMS | - | - | 2024-08-09 00:19:14 | Deep Dive |
| CVE-2024-7394 | Concrete CMS version 9.0.0 through 9.3.2 and below 8.5.18 - Stored XSS in getAttributeSetName() | Concrete CMS | Concrete CMS | - | - | 2024-08-08 16:31:48 | Deep Dive |
| CVE-2024-7551 | juzaweb CMS Theme Editor default path traversal | juzaweb | CMS | Low | 2.7 | 2024-08-06 12:31:04 | Deep Dive |
| CVE-2024-4353 | Stored XSS in Generate Board Name Input Field | Concrete CMS | Concrete CMS | - | - | 2024-08-01 18:23:31 | Deep Dive |
| CVE-2024-7300 | Bolt CMS Showcase Creation showcases cross site scripting | Bolt | CMS | Low | 3.5 | 2024-07-31 07:00:07 | Deep Dive |
| CVE-2024-7299 | Bolt CMS Entry Preview page cross site scripting | Bolt | CMS | Low | 3.5 | 2024-07-31 06:31:04 | Deep Dive |