
CVE-2026-3516
Authenticated Stored Cross-Site Scripting (XSS) in Contact List Plugin

Authenticated Stored Cross-Site Scripting (XSS) in Contact List Plugin
A Stored Cross-Site Scripting (XSS) vulnerability exists in Issabel PBX version 4.0.0-6. This allows an authenticated attacker to inject arbitrary…

CVE-2025-31161


CVE-2025-8517: Session Fixation in Vvveb CMS v1.0.6.1

DifuseHQ Kalmia CMS version 0.2.0 contains an Incorrect Access Control vulnerability in the /kal-api/auth/users API endpoint. Due to insufficient…

RestroPress – Online Food Ordering System 3.0.0 - 3.1.9.2 - Unauthenticated Information Exposure to Authentication Bypass via Forged JWT

PoC of CVE-2025-45805

CVE-2025-40602 is a local privilege escalation vulnerability in the appliance management console (AMC) of SonicWall Secure Mobile Access (SMA) 1000…

CVE-2024–27632 Reference

Vehicle Management System 1.0 - Stored Cross-Site Scripting (XSS)

XSS in Simple Cashiering System


CVE-2025-6934 POC

A public disclourse of CVE-2025-67730 in Frape lms By dharan ragunathan

A reflected cross-site scripting vulnerability in OpenWRT v18.06.2

This repository contains a laboratory-grade analysis and a **safe Proof-of-Concept** for the vulnerability **CVE-2025-68613**, affecting the workflow…

CVE-2022-23779 is a security vulnerability in Zoho ManageEngine Desktop Central ,Testing for CVE-2022-23779 using curl