Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
CVE-2025-26356 vulnerabilities and exploits
(subscribe to this query)
820
VMScore
CVE-2025-26356
A CWE-35 "Path Traversal" in maxtime/api/database/database.lua (setActive endpoint) in Q-Free MaxTime less than or equal to version 2.11.0 allows an authenticated remote malicious user to overwrite sensitive files via crafted HTTP requests.
Q-free Maxtime
Preferred Score:
VMScore
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
viasat
dos
cross-site request forgery
teconcetheme
CVE-2025-1565
CVE-2025-28076
firmware
z2d
web server
CVE-2025-2070
CVE-2025-3645
CVE-2025-31324
CVE-2024-6235
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started