Vulnerabilities
Summary — last 7 days
New vulnerabilities2,684▼ 80 vs. last week
Critical / high1,442▲ 302 vs. last week
New active exploitation (KEV)7▼ 3 vs. last week
Unscored (no CVSS)64▼ 462 vs. last week
6 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | High (7.5) | 0.97% | — | Scripts-for-sites EZ Webring | 2/23/2009 | 6/16/2026 | SQL injection vulnerability in category.php in Scripts For Sites (SFS) EZ Webring allows remote attackers to execute arbitrary SQL commands via the cat parameter. | |
| Modified | High (7.5) | 2.5% | — | Psychdaily PHP Ring Webring System | 8/12/2008 | 6/16/2026 | admin/wr_admin.php in PHP-Ring Webring System (aka uPHP_ring_website) 0.9.1 allows remote attackers to bypass authentication and gain administrative access by setting the admin cookie to 1. | |
| Modified | Medium (6.8) | 1.1% | — | Prozilla Webring | 8/15/2007 | 6/16/2026 | SQL injection vulnerability in category.php in Prozilla Webring allows remote attackers to execute arbitrary SQL commands via the cat parameter. | |
| Modified | High (7.5) | 2.2% | — | Php-ring Webring System | 4/24/2007 | 6/16/2026 | SQL injection vulnerability in index.php in PHP-Ring Webring System (aka uPHP_ring_website) 0.9 allows remote attackers to execute arbitrary SQL commands via the ring parameter. | |
| Modified | Medium (4.3) | 1.7% | — | Bernard Joly BJ Webring | 3/7/2007 | 6/16/2026 | Cross-site scripting (XSS) vulnerability in formulaire.php in Bernard JOLY BJ Webring allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter related to the add link menu. | |
| Modified | High (7.5) | 3.4% | — | Joomla Webring Component | 8/14/2006 | 6/16/2026 | PHP remote file inclusion vulnerability in admin.webring.docs.php in the Webring Component (com_webring) 1.0 and earlier for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the component_dir parameter. |