Browse all 5 CVE security advisories affecting factionsecurity. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-44668 | Faction: Unauthenticated Read, Modify, and Delete of Boilerplate Templates — faction CWE-306 | 9.8 | Critical | 2026-05-26 |
| CVE-2026-44669 | Faction: Stored XSS in Assessment Attachment Filename Preview Rendering — faction CWE-79 | 8.7 | High | 2026-05-26 |
| CVE-2026-44667 | Faction: Stored XSS in Remediation Verification Attachment Filename Preview Rendering — faction CWE-79 | 8.7 | High | 2026-05-26 |
| CVE-2025-66022 | FACTION Unauthenticated Custom Extension Upload leads to RCE — faction CWE-829 | 9.7 | Critical | 2025-11-26 |
| CVE-2025-27422 | FACTION Allows Authentication Bypass via User Creation — faction CWE-287 | 7.5 | High | 2025-03-03 |
This page lists every published CVE security advisory associated with factionsecurity. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.