XBOW
4 kredili kayıt · son 12 ayda 0 · 0 tanesi CISA KEV’de
Adlar CNA kayıtlarındaki serbest metindir; aynı kişi farklı yazımlarla ayrı görünebilir. Düzeltme için bize yazın.
Kredili kayıtlar
Araştırmacılar| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
42Planlayın | CVE-2025-8868Kavram kanıtı | Chef Automate compliance service SQL Injection Vulnerabilitychef · automate · CWE-89 | Yüksek8,8 | — | %24,3 | 29 Eyl 2025 |
31İzleyin | CVE-2025-8264İstismar yok | Versions of the package z-push/z-push-dev before 2.7.6 are vulnerable to SQL Injection due to unparameterized queries in the IMAP backend.CWE-89 | Yüksek7,9 | — | %0,4 | 29 Tem 2025 |
24İzleyin | CVE-2025-0133Kavram kanıtı | PAN-OS: Reflected Cross-Site Scripting (XSS) Vulnerability in GlobalProtect Gateway and Portalpalo alto networks · cloud ngfw · CWE-79 | Düşük2,7 | — | %46,4 | 14 May 2025 |
24İzleyin | CVE-2025-27888Kavram kanıtı | Apache Druid: Server-Side Request Forgery and Cross-Site Scriptingapache · druid · CWE-79 | Orta5,8 | — | %1,8 | 20 Mar 2025 |
- CVE-2025-886842Planlayın
Chef Automate compliance service SQL Injection Vulnerability
YüksekCVSS 8,8Kavram kanıtıEPSS %24chef · automate29 Eyl 2025
- CVE-2025-826431İzleyin
Versions of the package z-push/z-push-dev before 2.7.6 are vulnerable to SQL Injection due to unparameterized queries in the IMAP backend.
YüksekCVSS 7,9İstismar yokEPSS %029 Tem 2025
- CVE-2025-013324İzleyin
PAN-OS: Reflected Cross-Site Scripting (XSS) Vulnerability in GlobalProtect Gateway and Portal
DüşükCVSS 2,7Kavram kanıtıEPSS %46palo alto networks · cloud ngfw14 May 2025
- CVE-2025-2788824İzleyin
Apache Druid: Server-Side Request Forgery and Cross-Site Scripting
OrtaCVSS 5,8Kavram kanıtıEPSS %2apache · druid20 Mar 2025