Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Aquanight

#23821of 53,632
9.9Total CVSS
Vulnerabilities · 2
Medium
2
PT-2026-30567
5.0
2026-04-06
Unknown · Projectsend · CVE-2026-5624
Name of the Vulnerable Software and Affected Versions ProjectSend version r2002 Description A security flaw has been discovered in ProjectSend r2002 affecting unknown code within the `upload.php` file. A manipulation of this code results in cross-site request forgery, and the attack can be initiated remotely. The exploit has been released publicly. Recommendations Upgrade to version r2029 to resolve this issue.
PT-2025-34698
4.9
2025-08-25
Unknown · Kalcaddle Kodbox · CVE-2025-9414
Name of the Vulnerable Software and Affected Versions: kalcaddle kodbox version 1.61 Description: A server-side request forgery issue exists in kalcaddle kodbox 1.61. The issue affects an unknown functionality of the file `/?explorer/upload/serverDownload` within the Download from Link Handler component. Manipulation of the `url` argument can lead to server-side request forgery. Remote exploitation is possible, and the exploit has been made public. The vendor was contacted regarding this disclosure but did not respond. Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.