361,800
Total CVEs
26,223
Critical
85,816
High
1,626
CISA KEV
0
This Week
4,414 results · Page 24/177
Monstra CMS 3.0.4 and earlier has XSS via index.php.
monstra
Advisto PEEL SHOPPING 9.0.0 has CSRF via en/achat/caddie_ajout.php and en/achat/caddie_affichage.php, as demonstrated by an XSS payload in the couleurId[0] parameter to the latter.
peel
Certain Logitech Unifying devices allow attackers to dump AES keys and addresses, leading to the capability of live decryption of Radio Frequency transmissions, as demonstrated by an attack against a Logitech K360 keyboard.
logitech
mod_auth_mellon through 0.14.2 has an Open Redirect via the login?ReturnTo= substring, as demonstrated by omitting the // after http: in the target URL.
mod_auth_mellon_project · oracle · fedoraproject · canonical