Vulnerabilities

Summary — last 7 days

New vulnerabilities2,706▼ 533 vs. last week
Critical / high1,274▼ 219 vs. last week
New active exploitation (KEV)4▼ 5 vs. last week
Unscored (no CVSS)254▼ 249 vs. last week
–

1 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedCritical (9.8)1.6%—Golemcms Project Golemcms7/24/20186/17/2026
GolemCMS through 2008-12-24, if the install/ directory remains active after an installation, allows remote attackers to execute arbitrary PHP code by inserting this code into the "Database Information" "Table prefix" form field, or obtain sensitive information via a direct request for install/install.sql.
Orbitaley — Vulnerabilities