Vulnerabilities in givanz

39 results
CVE-2025-8518MEDIUMgivanz Vvveb Code Editor code.php save code injectionEPSS 1.3%CVE-2026-5615MEDIUMgivanz Vvvebjs File Upload Endpoint upload.php cross site scriptingEPSS 0.8%CVE-2026-39918CRITICALVvveb < 1.0.8.1 Code Injection via Installation EndpointEPSS 0.7%CVE-2025-8517MEDIUMgivanz Vvveb session fixiationEPSS 0.6%CVE-2026-34427HIGHVvveb < 1.0.8.1 Privilege Escalation via admin/user/saveEPSS 0.6%CVE-2025-11028MEDIUMgivanz Vvveb Image information disclosureEPSS 0.6%CVE-2026-41934HIGHVvveb < 1.0.8.2 Authenticated RCE via Code EditorEPSS 0.5%CVE-2026-41938HIGHVvveb < 1.0.8.2 RCE via Media Upload HandlerEPSS 0.5%CVE-2025-11944MEDIUMgivanz Vvveb Raw SQL import.php import sql injectionEPSS 0.5%CVE-2025-9397MEDIUMgivanz Vvveb media.php unrestricted uploadEPSS 0.5%CVE-2026-41928MEDIUMVvveb < 1.0.8.2 Information Disclosure via Cron ControllerEPSS 0.4%CVE-2026-41937HIGHVvveb < 1.0.8.3 Unrestricted File Upload RCE via Plugin UploadEPSS 0.4%CVE-2025-8519MEDIUMgivanz Vvveb Drag-and-Drop Editor editor information disclosureEPSS 0.4%CVE-2025-12203MEDIUMgivanz Vvveb Code Editor functions.php sanitizeFileName path traversalEPSS 0.4%CVE-2025-9728MEDIUMgivanz Vvveb login.tpl cross site scriptingEPSS 0.3%CVE-2026-41930CRITICALVvveb < 1.0.8.2 Hard-coded Credentials Information Disclosure via phpMyAdminEPSS 0.3%CVE-2025-11026MEDIUMgivanz Vvveb Configuration File information disclosureEPSS 0.3%CVE-2025-8520MEDIUMgivanz Vvveb Drag-and-Drop Editor editor server-side request forgeryEPSS 0.3%CVE-2025-8522LOWgivanz Vvvebjs node.js save.php path traversalEPSS 0.3%CVE-2026-34429MEDIUMVvveb < 1.0.8.1 Stored XSS via Media Upload and RenameEPSS 0.3%