| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-48701 | Statamic CMS vulnerable to Cross-site Scripting via uploaded assets | statamic | cms | High | 7.5 | 2023-11-21 22:34:11 | Deep Dive |
| CVE-2023-48217 | Remote code execution via form uploads in statamic/cms | statamic | cms | High | 8.8 | 2023-11-14 21:38:38 | Deep Dive |
| CVE-2023-47129 | Statamic CMS remote code execution via front-end form uploads | statamic | cms | High | 8.3 | 2023-11-10 18:48:03 | Deep Dive |
| CVE-2023-5919 | SourceCodester Company Website CMS Create Blog Page createblog unrestricted upload | SourceCodester | Company Website CMS | Medium | 4.7 | 2023-11-02 13:31:07 | Deep Dive |
| CVE-2023-5812 | flusity CMS upload.php handleFileUpload unrestricted upload | flusity | CMS | Medium | 4.7 | 2023-10-27 01:31:05 | Deep Dive |
| CVE-2023-5811 | flusity CMS posts.php loadPostAddForm cross site scripting | flusity | CMS | Low | 2.4 | 2023-10-27 00:31:06 | Deep Dive |
| CVE-2023-5810 | flusity CMS posts.php loadPostAddForm cross site scripting | flusity | CMS | Low | 2.4 | 2023-10-27 00:31:05 | Deep Dive |
| CVE-2023-5793 | flusity CMS Dashboard customblock.php loadCustomBlocCreateForm cross site scripting | flusity | CMS | Low | 3.5 | 2023-10-26 17:00:07 | Deep Dive |
| CVE-2023-4090 | Cross-Site Scripting (XSS) vulnerability on WideStand CMS of Acilia | Acilia | Widestand CMS | Medium | 5.4 | 2023-10-04 11:02:48 | Deep Dive |
| CVE-2023-5259 | ForU CMS cms_admin.php denial of service | ForU | CMS | Low | 2.7 | 2023-09-29 11:31:06 | Deep Dive |
| CVE-2023-5221 | ForU CMS index.php code injection | ForU | CMS | Medium | 4.7 | 2023-09-27 13:31:05 | Deep Dive |
| CVE-2023-5013 | Pluck CMS Installation install.php cross site scripting | Pluck | CMS | Low | 2.6 | 2023-09-16 23:00:08 | Deep Dive |
| CVE-2023-41892 | Craft CMS Remote Code Execution vulnerability | craftcms | cms | Critical | 10.0 | 2023-09-13 19:45:26 | Deep Dive |
| CVE-2023-4743 | Dreamer CMS file access | Dreamer | CMS | Low | 3.1 | 2023-09-03 23:00:07 | Deep Dive |
| CVE-2023-4548 | SPA-Cart eCommerce CMS GET Parameter search sql injection | SPA-Cart | eCommerce CMS | Medium | 6.3 | 2023-08-26 09:31:05 | Deep Dive |
| CVE-2023-4547 | SPA-Cart eCommerce CMS search cross site scripting | SPA-Cart | eCommerce CMS | Low | 3.5 | 2023-08-26 09:00:07 | Deep Dive |
| CVE-2023-40035 | Craft CMS vulnerable to Remote Code Execution via validatePath bypass | craftcms | cms | High | 7.2 | 2023-08-23 20:05:57 | Deep Dive |
| CVE-2023-37905 | Cross-site Scripting (XSS) in Source Mode of Editor in ckeditor-wordcount-plugin | w8tcha | CKEditor-WordCount-Plugin | Medium | 6.1 | 2023-07-21 19:35:50 | Deep Dive |
| CVE-2023-3790 | Boom CMS assets-manager add cross site scripting | Boom | CMS | Low | 3.5 | 2023-07-20 16:31:04 | Deep Dive |
| CVE-2023-3789 | PaulPrinting CMS Search delivery cross site scripting | PaulPrinting | CMS | Low | 3.5 | 2023-07-20 16:00:05 | Deep Dive |