Vulnerabilities
Summary — last 7 days
New vulnerabilities3,142▲ 566 vs. last week
Critical / high1,456▲ 54 vs. last week
New active exploitation (KEV)5▼ 1 vs. last week
Unscored (no CVSS)301▲ 287 vs. last week
5 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Analyzed | Medium (6.3) | 0.23% | — | Fptsoftware Nightwolf Penetration Testing Platform | 4/13/2026 | 7/7/2026 | Stored Cross Site Scripting in NightWolf Penetration Testing Platform allows attack trigger and run malicious script in user's browser | |
| Deferred | Medium (6.9) | 0.36% | — | Nightwolf Penetration Testing PlatformAINightwolf LogbugAI | 3/27/2025 | 6/17/2026 | Cross-Site Scripting (XSS) vulnerability in the Logbug module of NightWolf Penetration Testing Platform 1.2.2 allows attackers to execute JavaScript through the markdown editor feature. | |
| Analyzed | Medium (5.4) | 0.29% | — | Easy Test Online Learning AND Testing Platform Project Easy Test Online Learning AND Testing Platform | 8/30/2024 | 6/17/2026 | Easy test Online Learning and Testing Platform from HWA JIUH DIGITAL TECHNOLOGY does not properly validate a specific page parameter, allowing remote attackers with regular privilege to inject arbitrary JavaScript code and perform Reflected Cross-site scripting attacks. | |
| Analyzed | High (8.8) | 0.67% | — | Easy Test Online Learning AND Testing Platform Project Easy Test Online Learning AND Testing Platform | 8/30/2024 | 6/17/2026 | Easy test Online Learning and Testing Platform from HWA JIUH DIGITAL TECHNOLOGY does not properly validate a specific page parameter, allowing remote attackers with regular privilege to inject arbitrary SQL commands to read, modify, and delete database contents. | |
| Modified | High (7.5) | 1.1% | — | NC3 Testing Platform | 11/20/2023 | 6/17/2026 | TestingPlatform is a testing platform for Internet Security Standards. Prior to version 2.1.1, user input is not filtered correctly. Nmap options are accepted. In this particular case, the option to create log files is accepted in addition to a host name (and even without). A log file is created at the location… |