|
2711
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A flaw has been found in erupts erupt bis 1.13.3. Affected by this vulnerability is the function EruptDataQuery of the file erupt-ai/src/main/java/xyz/erupt/ai/call/impl/EruptDataQuery.java of the co…
|
CWE-89 CWE-564
SQL Injection SQL Injection: Hibernate
|
CVE-2026-4593
|
2026-04-25 01:32 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2712
|
6.3 |
MEDIUM
Network
|
-
|
-
|
Se ha encontrado una falla en erupts erupt bis 1.13.3. Afectada por esta vulnerabilidad es la función EruptDataQuery del archivo erupt-ai/src/main/java/xyz/erupt/ai/call/impl/EruptDataQuery.java del …
|
CWE-89 CWE-564
SQL Injection SQL Injection: Hibernate
|
CVE-2026-4593
|
2026-04-25 01:32 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2713
|
6.3 |
MEDIUM
Network
|
-
|
-
|
Una vulnerabilidad fue identificada en kalcaddle kodbox 1.64. El elemento afectado es la función PathDriverUrl del archivo /workspace/source-code/app/controller/explorer/editor.class.PHP del componen…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-4589
|
2026-04-25 01:32 |
2026-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2714
|
3.1 |
LOW
Network
|
-
|
-
|
A security flaw has been discovered in kalcaddle kodbox 1.64. The impacted element is an unknown function of the file /workspace/source-code/plugins/oauth/controller/bind/index.class.php of the compo…
|
CWE-352 CWE-862
Origin Validation Error Missing Authorization
|
CVE-2026-4590
|
2026-04-25 01:32 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2715
|
3.1 |
LOW
Network
|
-
|
-
|
Se ha descubierto una vulnerabilidad de seguridad en kalcaddle kodbox 1.64. El elemento afectado es una función desconocida del archivo /workspace/source-code/plugins/oauth/controller/bind/index.clas…
|
CWE-352 CWE-862
Origin Validation Error Missing Authorization
|
CVE-2026-4590
|
2026-04-25 01:32 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2716
|
4.7 |
MEDIUM
Network
|
-
|
-
|
Se ha identificado una debilidad en kalcaddle kodbox 1.64. Esto afecta a la función checkBin del archivo /workspace/source-code/plugins/fileThumb/app.PHP del componente fileThumb Endpoint. Ejecutar u…
|
CWE-77 CWE-78
Command Injection OS Command
|
CVE-2026-4591
|
2026-04-25 01:32 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2717
|
5.6 |
MEDIUM
Network
|
-
|
-
|
A security vulnerability has been detected in kalcaddle kodbox 1.64. This impacts the function loginAfter/tfaVerify of the file /workspace/source-code/plugins/client/controller/tfa/index.class.php of…
|
CWE-287
Improper Authentication
|
CVE-2026-4592
|
2026-04-25 01:32 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2718
|
5.6 |
MEDIUM
Network
|
-
|
-
|
Una vulnerabilidad de seguridad ha sido detectada en kalcaddle kodbox 1.64. Esto afecta la función loginAfter/tfaVerify del archivo /workspace/source-code/plugins/client/controller/tfa/index.class.ph…
|
CWE-287
Improper Authentication
|
CVE-2026-4592
|
2026-04-25 01:32 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2719
|
7.3 |
HIGH
Network
|
-
|
-
|
A vulnerability has been found in erupts erupt up to 1.13.3. Affected by this issue is the function geneEruptHqlOrderBy of the file erupt-data/erupt-jpa/src/main/java/xyz/erupt/jpa/dao/EruptJpaUtils.…
|
CWE-89 CWE-564
SQL Injection SQL Injection: Hibernate
|
CVE-2026-4594
|
2026-04-25 01:32 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2720
|
2.4 |
LOW
Network
|
-
|
-
|
A vulnerability was determined in code-projects Exam Form Submission 1.0. This vulnerability affects unknown code of the file /admin/update_s6.php. Executing a manipulation of the argument sname can …
|
CWE-79 CWE-94
Cross-site Scripting Code Injection
|
CVE-2026-4595
|
2026-04-25 01:32 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|