Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
CVE-2025-26356 vulnerabilities and exploits
(subscribe to this query)
7.2
CVSSv3
CVE-2025-26356
A CWE-35 "Path Traversal" in maxtime/api/database/database.lua (setActive endpoint) in Q-Free MaxTime less than or equal to version 2.11.0 allows an authenticated remote malicious user to overwrite sensitive files via crafted HTTP requests.
Q-free Maxtime
Preferred Score:
CVSSv2
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
CVE-2025-46541
gopiplus@hotmail.com
CVE-2025-46461
privilege
CVE-2025-46473
CVE-2025-30406
trân minh-quân
XSS
deserialization
CVE-2025-46507
wp filter post category
CVE-2025-21204
padam shankhadev
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started