Vulnerabilities

Summary — last 7 days

New vulnerabilities2,717▼ 139 vs. last week
Critical / high1,239▼ 297 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)245▲ 202 vs. last week
–

2 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedMedium (6.8)0.87%💥 ExploitTinyeventXoops Tiny Event Module2/25/20086/16/2026
SQL injection vulnerability in index.php in the Tiny Event (tinyevent) 1.01 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the id parameter in a print action, a different vector than CVE-2007-1811.
ModifiedMedium (6.8)3.5%💥 ExploitLimbo CMS Event Module12/28/20066/16/2026
PHP remote file inclusion in eventcal/mod_eventcal.php in the event module 1.0 for Limbo CMS allows remote attackers to execute arbitrary PHP code via a URL in the lm_absolute_path parameter.
Orbitaley — Vulnerabilities