Vulnerabilidades em MacWarrior
28 resultadosCVE-2025-21624CRITICALClipBucket V5 Playlist Cover File Upload to Remote Code ExecutionEPSS 1.2%CVE-2025-21623HIGHClipBucket V5 Unauthenticated Template Directory Update to Denial-of-ServiceEPSS 1.1%CVE-2025-21622HIGHClipBucket V5 Avatar URL Path Traversal to Arbitrary File DeleteEPSS 0.9%CVE-2025-62424MEDIUMClipBucket path traversal vulnerability in template editor allows arbitrary file read and writeEPSS 0.9%CVE-2025-62429HIGHClipBucket v5 executes arbitrary PHP codeEPSS 0.8%CVE-2024-54135CRITICALUntrusted Deserialization in ClipBucket-v5 Version 2.0 to 5.5.1 Revision 199EPSS 0.7%CVE-2024-54136CRITICALUntrusted Deserialization in ClipBucket-v5 Version 5.5.1 Revision 199 and BelowEPSS 0.7%CVE-2026-42846CRITICALClipBucket: Remote Play URL Command InjectionEPSS 0.6%CVE-2025-62423MEDIUMClipBucket V5 Blind SQL injection in the Admin PanelEPSS 0.5%CVE-2026-32321HIGHClipBucket v5 has time-based Blind SQL Injection in ajax.php that leads to Data ExfiltrationEPSS 0.4%CVE-2025-64338MEDIUMClipBucket's Manage Photos Feature is Vulnerable to Stored XSS via Collection NameEPSS 0.4%CVE-2026-45060CRITICALClipBucket: Blind SQL Injection in progress_video.phpEPSS 0.4%CVE-2025-64114MEDIUMClipBucket v5: SQL Injection possible through ClipBucket Custom Fields pluginEPSS 0.4%CVE-2026-21875CRITICALClipBucket v5 Vulnerable to Blind SQL Injection through Channel CommentsEPSS 0.3%CVE-2025-65113MEDIUMClipBucket v5 Unauthenticated Object Flagging VulnerabilityEPSS 0.3%CVE-2025-62709MEDIUMClipBucket v5 is vulnerable to password reset link manipulationEPSS 0.3%CVE-2026-45418HIGHClipBucket: Blind SQL Injection in subtitle_edit.phpEPSS 0.3%CVE-2026-25728CRITICALClipBucket v5 Affected by Remote Code Execution via Avatar/Background File Upload Race ConditionEPSS 0.3%CVE-2026-28354MEDIUMClipBucket v5 has IDOR in Collection Item ManagementEPSS 0.3%CVE-2025-64336HIGHClipBucket v5's Manage Photo Feature is Vulnerable to Stored XSS Attack via Photo TitleEPSS 0.2%