Recent
Job Postings <= 2.8.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'position_button' Parameter
Published 2026-09-15 by Wordfence
GPAC URL url.c gf_url_concatenate_ex heap-based overflow
Published 2026-09-15 by VulDB
GPAC Compositor media_object.c gf_mo_get_od_id use after free
Published 2026-09-15 by VulDB
GPAC MPEG Video Reframer reframe_mpgvid.c mpgviddmx_process heap-based overflow
Published 2026-09-15 by VulDB
proxy-addr vulnerable to IP spoofing via IPv4-mapped IPv6 trust subnet
Published 2026-09-15 by openjs
SourceCodester Online Faculty Clearance System Profile Picture Upload edit_picture.php move_uploaded_file unrestricted upload
Published 2026-09-15 by VulDB
Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce <= 4.1.23 - Authenticated (Subscriber+) Privilege Escalation via map_meta_cap Filter
Published 2026-09-15 by Wordfence
Eventin <= 4.1.23 - Authenticated (Custom+) Stored Cross-Site Scripting via 'etn_shedule_objective' schedule_slot Parameter
Published 2026-09-15 by Wordfence
AI Engine <= 3.7.7 - Insecure Direct Object Reference to Authenticated (Subscriber+) Sensitive Attachment Disclosure via 'mediaId' Parameter
Published 2026-09-15 by Wordfence
SourceCodester Online Faculty Clearance System delete_faculty1.php sql injection
Published 2026-09-15 by VulDB
Load more ↓