| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-2417 | Missing Authentication for Critical Function in Pharos Controls Mosaic Show Controller | Pharos Controls | Mosaic Show Controller | 中危 | - | 2026-03-24 18:06:32 | Deep Dive |
| CVE-2025-8621 | Mosaic Generator <= 1.0.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'c' Parameter | odn | Mosaic Generator | Medium | 6.4 | 2025-08-12 02:24:48 | Deep Dive |
| CVE-2024-5965 | Mosaic <= 1.7.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Button Shortcode | wildweblab | Mosaic | Medium | 6.4 | 2024-06-22 03:30:31 | Deep Dive |
| CVE-2024-0643 | Unrestricted upload of dangerous file types in C21 Live Encoder and Live Mosaic | Cires21 | C21 Live Encoder and Live Mosaic | Critical | 10.0 | 2024-01-17 13:44:20 | Deep Dive |
| CVE-2024-0642 | Inadequate access control in C21 Live Encoder and Live Mosaic | Cires21 | C21 Live Encoder and Live Mosaic | Critical | 9.8 | 2024-01-17 13:43:28 | Deep Dive |