High
CVSS: 7.3
A host header injection vulnerability exists in the NPM package of perfood/couch-auth
High
CVSS: 8.0
OneBlog v2.3.6 was discovered to contain a template injection vulnerability via the template management department.
Critical
CVSS: 9.9
Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. A Jinja2 SSTI vulnerability allows any user to execute commands on the server. In the case of the provided Docker Compose file as root. Thi…
Critical
CVSS: 9.9
The Dynamics 365 Integration plugin for WordPress is vulnerable to Remote Code Execution and Arbitrary File Read in all versions up to, and including, 1.3.23 via Twig Server-Side Template Injection. This is due to missing input validation a…