Vulnerabilities
Summary — last 7 days
New vulnerabilities2,833▲ 192 vs. last week
Critical / high1,314▼ 122 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)250▲ 236 vs. last week
2 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | Medium (4.3) | 1.1% | — | Idevspot Idevcart | 12/28/2009 | 6/16/2026 | Cross-site scripting (XSS) vulnerability in index.php in iDevCart 1.09 allows remote attackers to inject arbitrary web script or HTML via the SEARCH parameter in a browse action. | |
| Modified | Medium (6.8) | 2.0% | 💥 Exploit | Visionburst Vcart | 1/16/2008 | 6/16/2026 | PHP remote file inclusion vulnerability in VisionBurst vcart 3.3.2 allows remote attackers to execute arbitrary PHP code via a URL in the abs_path parameter to (1) index.php and (2) checkout.php. |