361,800
Total CVEs
26,223
Critical
85,816
High
1,626
CISA KEV
0
This Week
106 results · Page 4/5
A cross-site scripting (XSS) vulnerability in the publish article function of emlog pro v2.1.14 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the title field.
emlog
Deserialization of Untrusted Data in emlog pro v.2.1.15 and earlier allows a remote attacker to execute arbitrary code via the cache.php component.
emlog
emlog v2.1.9 was discovered to contain a SQL injection vulnerability via the component /admin/user.php.
emlog
emlog 2.1.9 is vulnerable to Arbitrary file deletion via admin\template.php.
emlog