361,800
Total CVEs
26,223
Critical
85,816
High
1,626
CISA KEV
0
This Week
125 results · Page 4/5
The miniOrange Discord Integration WordPress plugin before 2.1.6 does not have authorisation and CSRF in some of its AJAX actions, allowing any logged in users, such as subscriber to call them, and disable the app for example
miniorange
Authentication Bypass vulnerability in miniOrange OAuth 2.0 client for SSO plugin <= 1.11.3 at WordPress.
miniorange
Authentication Bypass vulnerability in miniOrange WP OAuth Server plugin <= 3.0.4 at WordPress.
miniorange
Orange Station 1.0 was discovered to contain a SQL injection vulnerability via the username parameter.
garage_management_system_project