Vulnerabilities
Summary — last 7 days
New vulnerabilities2,845▼ 222 vs. last week
Critical / high1,330▼ 168 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)214▼ 107 vs. last week
2 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | High (7.5) | 2.7% | 💥 Exploit | Katy Whitton WEB Development Newscmslite | 1/5/2007 | 6/16/2026 | newsCMSlite stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for newsCMS.mdb. | |
| Modified | High (7.5) | 3.6% | 💥 Exploit | Katy Whitton Newscmslite | 5/30/2006 | 6/16/2026 | newsadmin.asp in Katy Whitton NewsCMSLite allows remote attackers to bypass authentication and gain administrative access by setting the loggedIn cookie to "xY1zZoPQ". |