Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

CVE-2025-3736

Description: Vulnerability in Drupal Simple GTM.This issue affects Simple GTM: *.*.

EPSS Score: 0.03%

Source: CVE
April 16th, 2025 (4 days ago)

CVE-2025-3735

Description: Vulnerability in Drupal Panelizer (obsolete).This issue affects Panelizer (obsolete): *.*.

EPSS Score: 0.03%

Source: CVE
April 16th, 2025 (4 days ago)

CVE-2025-3734

Description: Allocation of Resources Without Limits or Throttling vulnerability in Drupal Stage File Proxy allows Flooding.This issue affects Stage File Proxy: from 0.0.0 before 3.1.5.

EPSS Score: 0.04%

Source: CVE
April 16th, 2025 (4 days ago)

CVE-2025-3733

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal baguetteBox.Js allows Cross-Site Scripting (XSS).This issue affects baguetteBox.Js: from 0.0.0 before 2.0.4, from 3.0.0 before 3.0.1.

EPSS Score: 0.04%

Source: CVE
April 16th, 2025 (4 days ago)

CVE-2024-40074

Description: Sourcecodester Online ID Generator System 1.0 was discovered to contain Stored Cross Site Scripting (XSS) via id_generator/classes/SystemSettings.php?f=update_settings, and the point of vulnerability is in the POST parameter 'short_name'.

EPSS Score: 0.02%

Source: CVE
April 16th, 2025 (4 days ago)

CVE-2024-40073

Description: Sourcecodester Online ID Generator System 1.0 was discovered to contain a SQL injection vulnerability via the template parameter at id_generator/admin/?page=generate&template=4.

EPSS Score: 0.01%

Source: CVE
April 16th, 2025 (4 days ago)

CVE-2024-40072

Description: Sourcecodester Online ID Generator System 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at id_generator/admin/?page=generate/index&id=1.

EPSS Score: 0.01%

Source: CVE
April 16th, 2025 (4 days ago)

CVE-2024-40071

Description: Sourcecodester Online ID Generator System 1.0 was discovered to contain an arbitrary file upload vulnerability via id_generator/classes/SystemSettings.php?f=update_settings. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.

EPSS Score: 0.02%

Source: CVE
April 16th, 2025 (4 days ago)

CVE-2024-40070

Description: Sourcecodester Online ID Generator System 1.0 was discovered to contain an arbitrary file upload vulnerability via id_generator/classes/Users.php?f=save. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.

EPSS Score: 0.02%

Source: CVE
April 16th, 2025 (4 days ago)

CVE-2024-40069

Description: Sourcecodester Online ID Generator System 1.0 was discovered to contain Stored Cross Site Scripting (XSS) via id_generator/classes/Users.php?f=save, and the point of vulnerability is in the POST parameter 'firstname' and 'lastname'.

EPSS Score: 0.03%

Source: CVE
April 16th, 2025 (4 days ago)