Publicly disclosed vulnerabilities discovered by or reported to Fluid Attacks

Buscar por termo

Filtros de busca

Discovered by

Todos

Severity

Todos

Our pentesters

Linkify 4.3.1 - Prototype Pollution & HTML Attribute Injection (XSS)

8.8

High

CVE-2025-8101

Published date:

25 de jul. de 2025

Discovered by

Camilo Vera

Our pentesters

Calibre Web 0.6.24 - Blind Command Injection

5.9

Medium

CVE-2025-7404

Published date:

24 de jul. de 2025

Discovered by

Johan Giraldo

Our pentesters

Calibre Web 0.6.24 - ReDoS

8.7

High

CVE-2025-6998

Published date:

24 de jul. de 2025

Discovered by

Johan Giraldo

Our pentesters

XSS in Laundry allows to perform an Account Takeover

5.1

Medium

CVE-2025-52842

Published date:

2 de jul. de 2025

Discovered by

Carlos Bello

Our pentesters

CSRF in Laundry allows to perform an account takeover

8.5

High

CVE-2025-52841

Published date:

2 de jul. de 2025

Discovered by

Carlos Bello

Our scanner

A Capture Contact Form (and tab) - Insecure deserialization

1.7

Low

CVE-2025-31287

Published date:

14 de mar. de 2025

Detected by

Fluid Attacks SAST Scanner,

disclosed by

Andres Roldan

Our scanner

Click-to-Call for Twilio - Reflected XSS

4.8

Medium

CVE-2025-31288

Published date:

14 de mar. de 2025

Detected by

Fluid Attacks SAST Scanner,

disclosed by

Andres Roldan

Our scanner

AIO Cache and Performance - Reflected XSS

4.8

Medium

CVE-2025-31289

Published date:

14 de mar. de 2025

Detected by

Fluid Attacks SAST Scanner,

disclosed by

Andres Roldan

Carregar mais

Buscar por termo

Filtros de busca

Discovered by

Todos

Severity

Todos

Our pentesters

Linkify 4.3.1 - Prototype Pollution & HTML Attribute Injection (XSS)

8.8

High

CVE-2025-8101

Published date:

25 de jul. de 2025

Discovered by

Camilo Vera

Our pentesters

Calibre Web 0.6.24 - Blind Command Injection

5.9

Medium

CVE-2025-7404

Published date:

24 de jul. de 2025

Discovered by

Johan Giraldo

Our pentesters

Calibre Web 0.6.24 - ReDoS

8.7

High

CVE-2025-6998

Published date:

24 de jul. de 2025

Discovered by

Johan Giraldo

Our pentesters

XSS in Laundry allows to perform an Account Takeover

5.1

Medium

CVE-2025-52842

Published date:

2 de jul. de 2025

Discovered by

Carlos Bello

Our pentesters

CSRF in Laundry allows to perform an account takeover

8.5

High

CVE-2025-52841

Published date:

2 de jul. de 2025

Discovered by

Carlos Bello

Our scanner

A Capture Contact Form (and tab) - Insecure deserialization

1.7

Low

CVE-2025-31287

Published date:

14 de mar. de 2025

Detected by

Fluid Attacks SAST Scanner,

disclosed by

Andres Roldan

Our scanner

Click-to-Call for Twilio - Reflected XSS

4.8

Medium

CVE-2025-31288

Published date:

14 de mar. de 2025

Detected by

Fluid Attacks SAST Scanner,

disclosed by

Andres Roldan

Our scanner

AIO Cache and Performance - Reflected XSS

4.8

Medium

CVE-2025-31289

Published date:

14 de mar. de 2025

Detected by

Fluid Attacks SAST Scanner,

disclosed by

Andres Roldan

Carregar mais

Buscar por termo

Filtros de busca

Discovered by

Todos

Severity

Todos

Our pentesters

Linkify 4.3.1 - Prototype Pollution & HTML Attribute Injection (XSS)

8.8

High

CVE-2025-8101

Published date:

25 de jul. de 2025

Discovered by

Camilo Vera

Our pentesters

Calibre Web 0.6.24 - Blind Command Injection

5.9

Medium

CVE-2025-7404

Published date:

24 de jul. de 2025

Discovered by

Johan Giraldo

Our pentesters

Calibre Web 0.6.24 - ReDoS

8.7

High

CVE-2025-6998

Published date:

24 de jul. de 2025

Discovered by

Johan Giraldo

Our pentesters

XSS in Laundry allows to perform an Account Takeover

5.1

Medium

CVE-2025-52842

Published date:

2 de jul. de 2025

Discovered by

Carlos Bello

Our pentesters

CSRF in Laundry allows to perform an account takeover

8.5

High

CVE-2025-52841

Published date:

2 de jul. de 2025

Discovered by

Carlos Bello

Our scanner

A Capture Contact Form (and tab) - Insecure deserialization

1.7

Low

CVE-2025-31287

Published date:

14 de mar. de 2025

Detected by

Fluid Attacks SAST Scanner,

disclosed by

Andres Roldan

Our scanner

Click-to-Call for Twilio - Reflected XSS

4.8

Medium

CVE-2025-31288

Published date:

14 de mar. de 2025

Detected by

Fluid Attacks SAST Scanner,

disclosed by

Andres Roldan

Our scanner

AIO Cache and Performance - Reflected XSS

4.8

Medium

CVE-2025-31289

Published date:

14 de mar. de 2025

Detected by

Fluid Attacks SAST Scanner,

disclosed by

Andres Roldan

Carregar mais

Buscar por termo

Filtros de busca

Discovered by

Todos

Severity

Todos

Our pentesters

Linkify 4.3.1 - Prototype Pollution & HTML Attribute Injection (XSS)

8.8

High

CVE-2025-8101

Published date:

25 de jul. de 2025

Discovered by

Camilo Vera

Our pentesters

Calibre Web 0.6.24 - Blind Command Injection

5.9

Medium

CVE-2025-7404

Published date:

24 de jul. de 2025

Discovered by

Johan Giraldo

Our pentesters

Calibre Web 0.6.24 - ReDoS

8.7

High

CVE-2025-6998

Published date:

24 de jul. de 2025

Discovered by

Johan Giraldo

Our pentesters

XSS in Laundry allows to perform an Account Takeover

5.1

Medium

CVE-2025-52842

Published date:

2 de jul. de 2025

Discovered by

Carlos Bello

Our pentesters

CSRF in Laundry allows to perform an account takeover

8.5

High

CVE-2025-52841

Published date:

2 de jul. de 2025

Discovered by

Carlos Bello

Our scanner

A Capture Contact Form (and tab) - Insecure deserialization

1.7

Low

CVE-2025-31287

Published date:

14 de mar. de 2025

Detected by

Fluid Attacks SAST Scanner,

disclosed by

Andres Roldan

Our scanner

Click-to-Call for Twilio - Reflected XSS

4.8

Medium

CVE-2025-31288

Published date:

14 de mar. de 2025

Detected by

Fluid Attacks SAST Scanner,

disclosed by

Andres Roldan

Our scanner

AIO Cache and Performance - Reflected XSS

4.8

Medium

CVE-2025-31289

Published date:

14 de mar. de 2025

Detected by

Fluid Attacks SAST Scanner,

disclosed by

Andres Roldan

Carregar mais

Learn about our policy for disclosing advisories of vulnerabilities in third-party, open-source products.

Comece seu teste gratuito de 21 dias

Descubra os benefícios de nossa solução de Hacking Contínuo, da qual empresas de todos os tamanhos já desfrutam.

Comece seu teste gratuito de 21 dias

Descubra os benefícios de nossa solução de Hacking Contínuo, da qual empresas de todos os tamanhos já desfrutam.

Comece seu teste gratuito de 21 dias

Descubra os benefícios de nossa solução de Hacking Contínuo, da qual empresas de todos os tamanhos já desfrutam.

As soluções da Fluid Attacks permitem que as organizações identifiquem, priorizem e corrijam vulnerabilidades em seus softwares ao longo do SDLC. Com o apoio de IA, ferramentas automatizadas e pentesters, a Fluid Attacks acelera a mitigação da exposição ao risco das empresas e fortalece sua postura de cibersegurança.

Assine nossa newsletter

Mantenha-se atualizado sobre nossos próximos eventos e os últimos posts do blog, advisories e outros recursos interessantes.

As soluções da Fluid Attacks permitem que as organizações identifiquem, priorizem e corrijam vulnerabilidades em seus softwares ao longo do SDLC. Com o apoio de IA, ferramentas automatizadas e pentesters, a Fluid Attacks acelera a mitigação da exposição ao risco das empresas e fortalece sua postura de cibersegurança.

Assine nossa newsletter

Mantenha-se atualizado sobre nossos próximos eventos e os últimos posts do blog, advisories e outros recursos interessantes.

As soluções da Fluid Attacks permitem que as organizações identifiquem, priorizem e corrijam vulnerabilidades em seus softwares ao longo do SDLC. Com o apoio de IA, ferramentas automatizadas e pentesters, a Fluid Attacks acelera a mitigação da exposição ao risco das empresas e fortalece sua postura de cibersegurança.

Assine nossa newsletter

Mantenha-se atualizado sobre nossos próximos eventos e os últimos posts do blog, advisories e outros recursos interessantes.