|
CVE-2026-11409
|
|
Injection de commande OS dans tp-link (CVE-2026-11409)
injection de commande OS dans tp-link (CVE-2026-11409). L'exploitation peut entraîner la prise de contrôle totale du système.
|
High
|
Cwe 78
Tp Link
Tl Wr940N Firmware
Tl Wr940N
|
il y a 2 mois
|
|
CVE-2025-69135
|
|
Subscriber SQL Injection in Events Schedule - WordPress Events Calendar Plugin <= 2.7.2 versions.
Subscriber SQL Injection in Events Schedule - WordPress Events Calendar Plugin <= 2.7.2 versions.
|
High
|
WordPress
SQL Injection
Cwe 89
|
il y a 2 mois
|
|
CVE-2025-69142
|
|
Unauthenticated Local File Inclusion in Abelle <= 1.22 versions.
Unauthenticated Local File Inclusion in Abelle <= 1.22 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69136
|
|
Unauthenticated Local File Inclusion in Wanium <= 1.9.8 versions.
Unauthenticated Local File Inclusion in Wanium <= 1.9.8 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69143
|
|
Unauthenticated Local File Inclusion in Mission <= 1.22 versions.
Unauthenticated Local File Inclusion in Mission <= 1.22 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69139
|
|
Unauthenticated Arbitrary File Deletion in Car Zone <= 3.7 versions.
Unauthenticated Arbitrary File Deletion in Car Zone <= 3.7 versions.
|
High
|
Cwe 22
|
il y a 2 mois
|
|
CVE-2025-69149
|
|
Unauthenticated Local File Inclusion in Top Dog <= 1.0.5 versions.
Unauthenticated Local File Inclusion in Top Dog <= 1.0.5 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69147
|
|
Unauthenticated Local File Inclusion in Putter <= 1.17 versions.
Unauthenticated Local File Inclusion in Putter <= 1.17 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69148
|
|
Unauthenticated Local File Inclusion in Quirky <= 1.23 versions.
Unauthenticated Local File Inclusion in Quirky <= 1.23 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69160
|
|
Unauthenticated Local File Inclusion in Gita <= 1.11 versions.
Unauthenticated Local File Inclusion in Gita <= 1.11 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69151
|
|
Unauthenticated Cross Site Scripting (XSS) in Grand Car Rental <= 3.7 versions.
Unauthenticated Cross Site Scripting (XSS) in Grand Car Rental <= 3.7 versions.
|
High
|
Cross-Site Scripting
Cwe 79
|
il y a 2 mois
|
|
CVE-2025-69162
|
|
Unauthenticated Local File Inclusion in Grecko <= 5.17 versions.
Unauthenticated Local File Inclusion in Grecko <= 5.17 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69161
|
|
Unauthenticated Local File Inclusion in Snowy <= 1.13 versions.
Unauthenticated Local File Inclusion in Snowy <= 1.13 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69159
|
|
Unauthenticated Local File Inclusion in Printo <= 1.11 versions.
Unauthenticated Local File Inclusion in Printo <= 1.11 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69150
|
|
Unauthenticated Local File Inclusion in Medeus <= 1.14 versions.
Unauthenticated Local File Inclusion in Medeus <= 1.14 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69171
|
|
Unauthenticated Local File Inclusion in Orpheus <= 1.3 versions.
Unauthenticated Local File Inclusion in Orpheus <= 1.3 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69172
|
|
Unauthenticated Local File Inclusion in Resurs <= 1.3 versions.
Unauthenticated Local File Inclusion in Resurs <= 1.3 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69173
|
|
Unauthenticated Local File Inclusion in Tipsy <= 1.1 versions.
Unauthenticated Local File Inclusion in Tipsy <= 1.1 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69168
|
|
Unauthenticated Local File Inclusion in Spike <= 1.2 versions.
Unauthenticated Local File Inclusion in Spike <= 1.2 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69163
|
|
Unauthenticated Local File Inclusion in WineShop <= 3.17 versions.
Unauthenticated Local File Inclusion in WineShop <= 3.17 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69165
|
|
Unauthenticated Local File Inclusion in Choreo <= 1.6 versions.
Unauthenticated Local File Inclusion in Choreo <= 1.6 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69177
|
|
Unauthenticated Local File Inclusion in Roneous <= 2.1.5 versions.
Unauthenticated Local File Inclusion in Roneous <= 2.1.5 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69178
|
|
Unauthenticated Local File Inclusion in Truemag <= 4.3.14.2 versions.
Unauthenticated Local File Inclusion in Truemag <= 4.3.14.2 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69176
|
|
Unauthenticated Local File Inclusion in ITactics <= 1.0 versions.
Unauthenticated Local File Inclusion in ITactics <= 1.0 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69167
|
|
Unauthenticated Local File Inclusion in Eros <= 1.3 versions.
Unauthenticated Local File Inclusion in Eros <= 1.3 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2026-0019
|
|
Élévation de privilèges dans google (CVE-2026-0019)
vulnérabilité dans google (CVE-2026-0019). L'exploitation peut entraîner la prise de contrôle totale du système.
|
High
|
Cwe 269
Google
Android
|
il y a 2 mois
|
|
CVE-2025-60223
|
|
Subscriber Arbitrary File Deletion in WPBot Pro Wordpress Chatbot <= 13.6.5 versions.
Subscriber Arbitrary File Deletion in WPBot Pro Wordpress Chatbot <= 13.6.5 versions.
|
High
|
WordPress
Cwe 22
|
il y a 2 mois
|
|
CVE-2025-69105
|
|
Unauthenticated Local File Inclusion in Modernee <= 1.6.0 versions.
Unauthenticated Local File Inclusion in Modernee <= 1.6.0 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69107
|
|
Unauthenticated Local File Inclusion in Rosaleen <= 2.8 versions.
Unauthenticated Local File Inclusion in Rosaleen <= 2.8 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69109
|
|
Unauthenticated Local File Inclusion in Raider Spirit <= 1.1.2 versions.
Unauthenticated Local File Inclusion in Raider Spirit <= 1.1.2 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69104
|
|
Unauthenticated Cross Site Scripting (XSS) in Qreatix <= 1.9.4 versions.
Unauthenticated Cross Site Scripting (XSS) in Qreatix <= 1.9.4 versions.
|
High
|
Cross-Site Scripting
Cwe 79
|
il y a 2 mois
|
|
CVE-2025-69116
|
|
Unauthenticated Local File Inclusion in Iona <= 1.0.8 versions.
Unauthenticated Local File Inclusion in Iona <= 1.0.8 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69103
|
|
Subscriber Arbitrary Content Deletion in Brikk <= 3.0.0 versions.
Subscriber Arbitrary Content Deletion in Brikk <= 3.0.0 versions.
|
High
|
Cwe 862
|
il y a 2 mois
|
|
CVE-2025-69119
|
|
Unauthenticated Local File Inclusion in Corbesier <= 1.15.0 versions.
Unauthenticated Local File Inclusion in Corbesier <= 1.15.0 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69112
|
|
Unauthenticated Local File Inclusion in Planty <= 1.14.0 versions.
Unauthenticated Local File Inclusion in Planty <= 1.14.0 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69113
|
|
Unauthenticated Local File Inclusion in Nexio <= 1.10.0 versions.
Unauthenticated Local File Inclusion in Nexio <= 1.10.0 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69110
|
|
Unauthenticated Local File Inclusion in AirSupply <= 2.0.0 versions.
Unauthenticated Local File Inclusion in AirSupply <= 2.0.0 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69117
|
|
Unauthenticated Local File Inclusion in Ingenioso <= 1.14.0 versions.
Unauthenticated Local File Inclusion in Ingenioso <= 1.14.0 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69114
|
|
Unauthenticated Local File Inclusion in MaxiNet <= 1.2.10 versions.
Unauthenticated Local File Inclusion in MaxiNet <= 1.2.10 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69131
|
|
Traversée de chemin dans wordpress (CVE-2025-69131)
traversée de chemin dans wordpress (CVE-2025-69131). Des informations confidentielles peuvent être exposées.
|
High
|
WordPress
Cwe 22
|
il y a 2 mois
|
|
CVE-2025-69124
|
|
Unauthenticated Local File Inclusion in Especio <= 1.0 versions.
Unauthenticated Local File Inclusion in Especio <= 1.0 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69125
|
|
Unauthenticated Local File Inclusion in Food Drop <= 1.3 versions.
Unauthenticated Local File Inclusion in Food Drop <= 1.3 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69118
|
|
Unauthenticated Local File Inclusion in CopyPress <= 1.4.5 versions.
Unauthenticated Local File Inclusion in CopyPress <= 1.4.5 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69121
|
|
Unauthenticated Local File Inclusion in Deliciosa <= 1.10.0 versions.
Unauthenticated Local File Inclusion in Deliciosa <= 1.10.0 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69138
|
|
Subscriber Privilege Escalation in Genemy <= 1.6.6 versions.
Subscriber Privilege Escalation in Genemy <= 1.6.6 versions.
|
High
|
Privilege Escalation
Cwe 266
|
il y a 2 mois
|
|
CVE-2025-69146
|
|
Unauthenticated Local File Inclusion in Dom <= 1.24 versions.
Unauthenticated Local File Inclusion in Dom <= 1.24 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69145
|
|
Unauthenticated Local File Inclusion in Gat <= 1.16 versions.
Unauthenticated Local File Inclusion in Gat <= 1.16 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-69141
|
|
Unauthenticated Local File Inclusion in Kelly Young <= 1.1.0 versions.
Unauthenticated Local File Inclusion in Kelly Young <= 1.1.0 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|
|
CVE-2025-59560
|
|
Unauthenticated Cross Site Scripting (XSS) in Sonaar <= 4.27.4 versions.
Unauthenticated Cross Site Scripting (XSS) in Sonaar <= 4.27.4 versions.
|
High
|
Cross-Site Scripting
Cwe 79
|
il y a 2 mois
|
|
CVE-2025-60085
|
|
Unauthenticated Local File Inclusion in Learnify <= 1.15.0 versions.
Unauthenticated Local File Inclusion in Learnify <= 1.15.0 versions.
|
High
|
Cwe 98
|
il y a 2 mois
|