| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-7191 | S-CMS reg.php sql injection | - | S-CMS | Medium | 5.5 | 2023-12-31 16:00:05 | Deep Dive |
| CVE-2023-7190 | S-CMS sql injection | - | S-CMS | Medium | 5.5 | 2023-12-31 15:31:03 | Deep Dive |
| CVE-2023-7189 | S-CMS sql injection | - | S-CMS | Medium | 5.5 | 2023-12-31 15:00:05 | Deep Dive |
| CVE-2023-7091 | Dreamer CMS uploadFile unrestricted upload | Dreamer | CMS | Medium | 6.3 | 2023-12-24 21:00:05 | Deep Dive |
| CVE-2023-7041 | codelyfe Stupid Simple CMS rename.php path traversal | codelyfe | Stupid Simple CMS | Medium | 5.4 | 2023-12-21 20:00:07 | Deep Dive |
| CVE-2023-7040 | codelyfe Stupid Simple CMS rename.php path traversal | codelyfe | Stupid Simple CMS | Medium | 4.3 | 2023-12-21 19:31:04 | Deep Dive |
| CVE-2023-6907 | codelyfe Stupid Simple CMS Deletion Interface delete.php improper authentication | codelyfe | Stupid Simple CMS | Medium | 5.4 | 2023-12-18 00:31:04 | Deep Dive |
| CVE-2023-6902 | codelyfe Stupid Simple CMS upload.php unrestricted upload | codelyfe | Stupid Simple CMS | Medium | 5.5 | 2023-12-17 15:31:04 | Deep Dive |
| CVE-2023-6901 | codelyfe Stupid Simple CMS HTTP POST Request handle-command.php os command injection | codelyfe | Stupid Simple CMS | High | 7.3 | 2023-12-17 14:00:05 | Deep Dive |
| CVE-2023-6380 | Open Redirect in Alkacon Software OpenCms | Alkacon | Open CMS | Medium | 6.1 | 2023-12-13 10:54:36 | Deep Dive |
| CVE-2023-6379 | Cross-site Scripting in Alkacon Software OpenCms | Alkacon | Open CMS | Medium | 5.4 | 2023-12-13 10:52:02 | Deep Dive |
| CVE-2023-49279 | Umbraco CMS vulnerable to stored XSS via SVG File Upload | umbraco | Umbraco-CMS | Low | 3.7 | 2023-12-12 19:35:06 | Deep Dive |
| CVE-2023-49278 | Umbraco CMS brute force exploit can be used to collect valid usernames | umbraco | Umbraco-CMS | Medium | 5.3 | 2023-12-12 19:14:03 | Deep Dive |
| CVE-2023-49274 | Umbraco CMS SMTP misconfiguration exposes potential registered user email | umbraco | Umbraco-CMS | Low | 3.7 | 2023-12-12 19:10:46 | Deep Dive |
| CVE-2023-49273 | Umbraco CMS vulnerable to Privilege Escalation using Spoofing | umbraco | Umbraco-CMS | Medium | 5.4 | 2023-12-12 19:05:39 | Deep Dive |
| CVE-2023-49089 | Umbraco CMS possible path traversal when creating packages from backoffice | umbraco | Umbraco-CMS | High | 7.7 | 2023-12-12 19:02:33 | Deep Dive |
| CVE-2023-48313 | Umbraco contains a DOM-XSS | umbraco | Umbraco-CMS | Medium | 4.3 | 2023-12-12 17:23:49 | Deep Dive |
| CVE-2023-48227 | Umbraco CMS Backoffice User can bypass "Publish" restriction | umbraco | Umbraco-CMS | Medium | 4.3 | 2023-12-12 17:12:02 | Deep Dive |
| CVE-2023-38694 | Umbraco CMS vulnerable to possible injection of HTML in an unintended form | umbraco | Umbraco-CMS | Low | 3.5 | 2023-12-12 17:09:08 | Deep Dive |
| CVE-2023-40626 | [20231101] - Core - Exposure of environment variables | Joomla! Project | Joomla! CMS | 中危 | - | 2023-11-29 12:28:48 | Deep Dive |