Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2021-39391
Cross Site Scripting (XSS) vulnerability exists in the admin panel in Beego v2.0.1 via the URI path in an HTTP request, which is activated by administrators viewing the "Request Statistics" page.
Beego Beego 2.0.1
6.1
CVSSv3
CVE-2021-39393
mm-wiki v0.2.1 exists to contain a cross-site scripting (XSS) vulnerability via the markdown editor.
Mm-wiki Project Mm-wiki 0.2.1
7.2
CVSSv3
CVE-2021-39402
MaianAffiliate v.1.0 is suffers from code injection by adding a new product via the admin panel. The injected payload is reflected on the affiliate main page for all authenticated and unauthenticated visitors.
Maianmedia Maianaffiliate 1.0
6.5
CVSSv3
CVE-2021-3941
In ImfChromaticities.cpp routine RGBtoXYZ(), there are some division operations such as `float Z = (1 - chroma.white.x - chroma.white.y) * Y / chroma.white.y;` and `chroma.green.y * (X + Z))) / d;` but the divisor is not checked for a 0 value. A specially crafted file could trigg...
Openexr Openexr 3.1.2
Redhat Enterprise Linux 6.0
Redhat Enterprise Linux 7.0
Redhat Enterprise Linux 8.0
Fedoraproject Fedora 34
Fedoraproject Fedora 35
Fedoraproject Fedora 36
Debian Debian Linux 10.0
Debian Debian Linux 11.0
6.1
CVSSv3
CVE-2021-39412
Multiple Cross Site Scripting (XSS) vulnerabilities exists in PHPGurukul Shopping v3.1 via the (1) callback parameter in (a) server_side/scripts/id_jsonp.php, (b) server_side/scripts/jsonp.php, and (c) scripts/objects_jsonp.php, the (2) value parameter in examples_support/editabl...
Shopping Portal Project Shopping Portal 3.1
9.8
CVSSv3
CVE-2021-3942
Certain HP Print products and Digital Sending products may be vulnerable to potential remote code execution and buffer overflow with use of Link-Local Multicast Name Resolution or LLMNR.
Hp Color Laserjet Cm4540 Mfp Cc419a Firmware
Hp Color Laserjet Cm4540 Mfp Cc420a Firmware
Hp Color Laserjet Cm4540 Mfp Cc421a Firmware
Hp Color Laserjet Cm5525 Mfp Ce707a Firmware
Hp Color Laserjet Cm5525 Mfp Ce708a Firmware
Hp Color Laserjet Cm5525 Mfp Ce709a Firmware
Hp Color Laserjet M578 Mfp 7zu85a Firmware
Hp Color Laserjet M578 Mfp 7zu86a Firmware
Hp Color Laserjet M578 Mfp 7zu87a Firmware
Hp Color Laserjet M578 Mfp 7zu88a Firmware
Hp Color Laserjet Enterprise Flow Mfp M880z D7p70a Firmware
Hp Color Laserjet Enterprise Flow Mfp M880z A2w75a Firmware
6.1
CVSSv3
CVE-2021-39421
A cross-site scripting (XSS) vulnerability in SeedDMS v6.0.15 allows malicious users to execute arbitrary web scripts or HTML via a crafted payload.
Seeddms Seeddms 6.0.15
5.4
CVSSv3
CVE-2021-39428
Cross Site Scripting (XSS) vulnerability in Users.php in eyoucms 1.5.4 allows remote malicious users to run arbitrary code and gain escalated privilege via the filename for edit_users_head_pic.
Eyoucms Eyoucms 1.5.4
6.8
CVSSv3
CVE-2021-3944
bookstack is vulnerable to Cross-Site Request Forgery (CSRF)
Bookstackapp Bookstack
NA
CVE-2021-39476
CVE-2021-39476
Preferred Score:
CVSSv3
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
ssl.com
CVE-2025-3278
CVE-2025-24054
brute force
firewall
privilege escalation
CVE-2025-24914
qriouslad
CVE-2025-42599
pritunl
namelessmc
CVE-2025-3103
CVE-2025-43895
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »