calendar_month
Schedule Chat Select your availability
Preferred Time Slots
Coordinated Disclosures

Vulnerability Repository

A centralized database of discovered vulnerabilities, security advisories, and coordinated disclosures across various software ecosystems.

pest_control
Total Findings
12
security
Disclosures
100%
public
Federated Nodes
Active
Logo
CVE-2026-40867
HIGH

Horilla - Unauthorized Helpdesk Attachment Access via Attachment ID Manipulation

Logo
CVE-2026-40866
HIGH

Horilla - Unauthorized Document Overwrite via File Upload Endpoint

Logo
CVE-2026-40865
HIGH

Horilla - Insecure Direct Object Reference at /employee/view-file/<int:id>

Logo
CVE-2026-34598
CRITICAL

YesWiki - Persistant Blind XSS at "/?BazaR&vue=consulter"

Logo
CVE-2025-48993
MEDIUM

Intermesh GroupOffice - Reflected XSS in Look and feel section of the application

Logo
CVE-2025-48992
HIGH

Intermesh GroupOffice - Blind XSS using user's First and Last names field executed on Synchronization's Address books

Logo
CVE-2025-48366
CRITICAL

Intermesh GroupOffice - Blind Stored XSS in Phone Number Field Enables Forced Redirect and Unauthorized Actions

Logo
CVE-2025-48368
CRITICAL

Intermesh GroupOffice - DOM-Based XSS in all Date Input Fields Allow Arbitrary JavaScript Execution

Logo
CVE-2025-48369
MEDIUM

Intermesh GroupOffice - Stored XSS in Tasks Comment Section

Logo
Pending (NASA)
MEDIUM

NASA - Vulnerability report pending disclosure

Logo
Pending (VLC)
MEDIUM

VLC Media Player - Vulnerability report pending disclosure

CV
CVE-2023-XXXX
CRITICAL

Privilege escalation vulnerability in Linux kernel's memory management subsystem.