Vulnerabilities
Summary — last 7 days
New vulnerabilities2,636▼ 212 vs. last week
Critical / high1,386▲ 155 vs. last week
New active exploitation (KEV)7▼ 3 vs. last week
Unscored (no CVSS)56▼ 473 vs. last week
3 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Deferred | High (7.1) | 0.19% | — | Plainware PlaininventoryAI | 4/9/2025 | 6/17/2026 | Cross-Site Request Forgery (CSRF) vulnerability in plainware PlainInventory z-inventory-manager allows Stored XSS.This issue affects PlainInventory: from n/a through <= 3.1.9. | |
| Deferred | High (7.1) | 0.33% | — | Plainware PlaininventoryAI | 2/3/2025 | 6/17/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in plainware PlainInventory z-inventory-manager allows Reflected XSS.This issue affects PlainInventory: from n/a through <= 3.1.5. | |
| Deferred | High (8.1) | 0.43% | — | Plainware PlaininventoryAI | 1/7/2025 | 6/17/2026 | Deserialization of Untrusted Data vulnerability in plainware PlainInventory z-inventory-manager allows Object Injection.This issue affects PlainInventory: from n/a through <= 3.1.6. |