Exploitdb Exploits
31,337 exploits tracked across all sources.
Joomla! Component com_formmaker 3.4 - SQL Injection
by Claudio Viviani
Food Order Portal - 'admin_user_delete.php' Cross-Site Request Forgery
by KnocKout
ChatSecure IM 2.2.4 iOS - Persistent Cross-Site Scripting
by Vulnerability-Lab
WordPress Plugin WP Support Plus Responsive Ticket System 2.0 - Multiple Vulnerabilities
by Fikri Fadzil
PrestaShop <1.6 - SQL Injection
SQL injection vulnerability in confirm.php in the mPAY24 payment module before 1.6 for PrestaShop allows remote attackers to execute arbitrary SQL commands via the TID parameter.
by Wireghoul
WordPress Theme Urban City - 'download.php' Arbitrary File Download
by Ashiyane Digital Security Team
WordPress Theme Epic - 'download.php' Arbitrary File Download
by Ashiyane Digital Security Team
WordPress Theme Authentic - 'download.php' Arbitrary File Download
by Ashiyane Digital Security Team
WordPress Theme Antioch - 'download.php' Arbitrary File Download
by Ashiyane Digital Security Team
WordPress Theme Acento - 'view-pdf.php?File' Arbitrary File Download
by alieye
WordPress Plugin Xhanch My Twitter - Cross-Site Request Forgery
by Voxel@Night
WordPress Plugin W3 Total Cache - 'admin.php' Cross-Site Request Forgery
by Voxel@Night
WordPress Plugin Bulk Delete Users by Email 1.0 - Cross-Site Request Forgery
by Fikri Fadzil
Phpmyfaq < 2.8.13 - Security Feature Bypass
phpMyFAQ before 2.8.13 allows remote attackers to bypass the CAPTCHA protection mechanism by replaying the request.
by smash
CVSS 5.3
mPAY24 <1.6 - Info Disclosure
The mPAY24 payment module before 1.6 for PrestaShop allows remote attackers to obtain credentials, the installation path, and other sensitive information via a direct request to api/curllog.log.
by Wireghoul
By Source