cardosource
11 exploits
Active since Jan 2026
grub-btrfs <2026-01-31 - Command Injection
grub-btrfs <2026-01-31 - Command Injection
Drupal core - Highly critical - SQL injection - SA-CORE-2026-004
Contest Gallery Plugin <28.1.4 - SQL Injection
CVSS 7.5
Contest Gallery Plugin <28.1.4 - SQL Injection
CVSS 7.5
Contest Gallery Plugin <28.1.4 - SQL Injection
CVSS 7.5
Drupal core - Highly critical - SQL injection - SA-CORE-2026-004
CVSS 9.8
MixPHP Framework 2.x-2.2.17 - Deserialization
CVSS 8.1
Quick Playground <= 1.3.1 - Missing Authorization to Unauthenticated Arbitrary File Upload
CVSS 9.8
MikroORM: SQL injection via runtime-controlled identifiers and JSON-path keys
CVSS 7.6
Python-Multipart <0.0.22 - Path Traversal
CVSS 8.6