|
Critical
|
21 Mar 2023 |
15 Apr 2026 |
CPAI-2026-3089
|
|
|
Vulnerability Scanning Techniques
|
|
Critical
|
21 Mar 2023 |
30 Mar 2026 |
CPAI-2026-2341
|
|
|
Vulnerability Scanning Techniques
|
|
Critical
|
13 Feb 2023 |
26 Mar 2026 |
CPAI-2022-1179
|
|
CVE-2022-31814 CVE-2022-40624
|
pfSense pfBlockerNG Command Injection (CVE-2022-31814; CVE-2022-40624)
|
|
Critical
|
1 Oct 2023 |
19 Mar 2026 |
CPAI-2022-1861
|
|
CVE-2022-31061
|
GLPI SQL Injection (CVE-2022-31061)
|
|
High
|
6 Jun 2023 |
19 Mar 2026 |
CPAI-2021-2980
|
|
CVE-2021-22054
|
VMware Workspace ONE UEM Console Server-Side Request Forgery (CVE-2021-22054)
|
|
High
|
26 Jul 2023 |
11 Mar 2026 |
CPAI-2023-3254
|
|
CVE-2023-1578
|
Pimcore SQL Injection (CVE-2023-1578)
|
|
Critical
|
18 Jan 2023 |
11 Mar 2026 |
CPAI-2022-1128
|
|
CVE-2022-46169
|
Cacti Command Injection (CVE-2022-46169)
|
|
Critical
|
5 Feb 2023 |
23 Feb 2026 |
CPAI-2019-3604
|
|
CVE-2019-0230
|
Apache Struts Remote Code Execution (CVE-2019-0230)
|
|
High
|
8 Jan 2023 |
22 Feb 2026 |
CPAI-2017-2076
|
|
CVE-2017-10974
|
Yaws Directory Traversal (CVE-2017-10974)
|
|
Critical
|
31 Jul 2023 |
15 Feb 2026 |
CPAI-2021-2928
|
|
CVE-2021-31474
|
SolarWinds Network Performance Monitor Insecure Deserialization (CVE-2021-31474)
|
|
High
|
28 Mar 2023 |
15 Feb 2026 |
CPAI-2022-3141
|
|
CVE-2022-4223
|
PostgreSQL pgAdmin Command Injection (CVE-2022-4223)
|
|
Medium
|
26 Mar 2023 |
11 Feb 2026 |
CPAI-2023-3236
|
|
CVE-2023-23752
|
Joomla! Information Disclosure (CVE-2023-23752)
|
|
Critical
|
6 Sep 2023 |
10 Feb 2026 |
CPAI-2025-12061
|
|
CVE-2019-8331 CVE-2020-11110 CVE-2020-35946 CVE-2022-0963 CVE-2022-42141 CVE-2022-44957 CVE-2023-27008 CVE-2023-33408 CVE-2023-36287 CVE-2023-4636 CVE-2024-30989 CVE-2024-3378 CVE-2025-49541 CVE-2025-49543
|
Cross-Site Scripting Over HTTP (CVE-2019-8331; CVE-2020-11110; CVE-2020-35946; CVE-2022-0963; CVE-2022-42141; CVE-2022-44957; CVE-2023-27008; CVE-2023-33408; CVE-2023-36287; CVE-2023-4636; CVE-2024-30989; CVE-2024-3378; CVE-2025-49541; CVE-2025-49543)
|
|
Critical
|
12 Nov 2023 |
9 Feb 2026 |
CPAI-2017-1716
|
|
CVE-2017-8835
|
Peplink Balance Routers SQL Injection (CVE-2017-8835)
|
|
High
|
5 Nov 2023 |
9 Feb 2026 |
CPAI-2023-0997
|
|
|
Centreon graph-split.php chartId SQL Injection
|
|
High
|
2 Nov 2023 |
9 Feb 2026 |
CPAI-2023-0962
|
|
|
Centreon hostGroupDependency.php dep_id SQL Injection
|
|
Critical
|
5 Sep 2023 |
9 Feb 2026 |
CPAI-2021-1845
|
|
CVE-2021-33543
|
UDP Technology IP Camera Directory Traversal (CVE-2021-33543)
|
|
High
|
28 Aug 2023 |
9 Feb 2026 |
CPAI-2015-1532
|
|
CVE-2015-2797
|
AirTies Air Buffer Overflow (CVE-2015-2797)
|
|
High
|
18 Jul 2023 |
9 Feb 2026 |
CPAI-2020-3868
|
|
CVE-2020-16205
|
Geutebruck Devices Command Injection (CVE-2020-16205)
|
|
Critical
|
20 Jun 2023 |
9 Feb 2026 |
CPAI-2014-2502
|
|
CVE-2014-8389
|
AirLive IP Cameras Command Injection (CVE-2014-8389)
|
|
High
|
22 May 2023 |
9 Feb 2026 |
CPAI-2023-0282
|
|
|
ThinkPHP Insecure Deserialization
|
|
Critical
|
15 Feb 2023 |
9 Feb 2026 |
CPAI-2022-1162
|
|
CVE-2022-4873
|
Netcomm Buffer Overflow (CVE-2022-4873)
|
|
High
|
2 Jan 2023 |
9 Feb 2026 |
CPAI-2018-2258
|
|
CVE-2018-12980
|
WAGO Arbitrary File Upload (CVE-2018-12980)
|
|
Critical
|
31 Oct 2023 |
5 Feb 2026 |
CPAI-2025-11913
|
|
CVE-2023-29798 CVE-2023-29799 CVE-2023-29800 CVE-2023-29801 CVE-2023-29802 CVE-2023-29803 CVE-2023-30013 CVE-2023-33487 CVE-2025-1339 CVE-2025-1829 CVE-2025-29209 CVE-2025-61044 CVE-2025-61045
|
TOTOLINK X18 Command Injection (CVE-2023-29798; CVE-2023-29799; CVE-2023-29800; CVE-2023-29801; CVE-2023-29802; CVE-2023-29803; CVE-2023-30013; CVE-2023-33487; CVE-2025-1339; CVE-2025-1829; CVE-2025-29209; CVE-2025-61044; CVE-2025-61045)
|
|
Critical
|
30 Nov 2023 |
2 Feb 2026 |
CPAI-2025-11657
|
|
CVE-2023-6549 CVE-2025-0492 CVE-2025-6121
|
Malicious Payloads Over HTTP Headers (CVE-2023-6549; CVE-2025-0492; CVE-2025-6121)
|
|
Critical
|
30 Nov 2023 |
20 Jan 2026 |
CPAI-2023-1245
|
|
CVE-2023-45878
|
Gibbonedu Arbitrary File Write (CVE-2023-45878)
|
|
Critical
|
16 Nov 2023 |
20 Jan 2026 |
CPAI-2023-0749
|
|
CVE-2023-32562
|
Ivanti Avalanche Unrestricted File Upload (CVE-2023-32562)
|
|
High
|
16 Oct 2023 |
20 Jan 2026 |
CPAI-2023-0643
|
|
CVE-2023-28128
|
Ivanti Avalanche Unrestricted File Upload (CVE-2023-28128)
|
|
High
|
26 Jun 2023 |
20 Jan 2026 |
CPAI-2022-1669
|
|
CVE-2022-36971 CVE-2022-36974
|
Ivanti Avalanche Web File Server Insecure Deserialization (CVE-2022-36971; CVE-2022-36974)
|
|
High
|
11 Jun 2023 |
20 Jan 2026 |
CPAI-2022-1560
|
|
CVE-2022-36982
|
Ivanti Avalanche Information Disclosure (CVE-2022-36982)
|
|
Critical
|
21 Mar 2023 |
14 Jan 2026 |
CPAI-2026-0249
|
|
|
Vulnerability Scanning Techniques
|
|
High
|
7 Aug 2023 |
29 Dec 2025 |
CPAI-2023-0604
|
|
CVE-2023-26347 CVE-2023-38205 CVE-2023-44347
|
Adobe ColdFusion Improper Access Control (CVE-2023-26347; CVE-2023-38205; CVE-2023-44347)
|
|
High
|
21 Aug 2023 |
28 Dec 2025 |
CPAI-2022-1719
|
|
CVE-2022-22956 CVE-2022-22957
|
VMware Multiple Products Insecure Deserialization (CVE-2022-22956; CVE-2022-22957)
|
|
Critical
|
12 Oct 2023 |
25 Dec 2025 |
CPAI-2023-0916
|
|
CVE-2023-38545
|
cURL libcurl Heap Buffer Overflow (CVE-2023-38545)
|
|
High
|
21 Nov 2023 |
25 Dec 2025 |
CPAI-2023-0913
|
|
CVE-2023-28384
|
MySCADA myPRO Command Injection (CVE-2023-28384)
|
|
High
|
12 Oct 2023 |
25 Dec 2025 |
CPAI-2022-1745
|
|
CVE-2022-24834
|
Redis Buffer Overflow (CVE-2022-24834)
|
|
High
|
7 Sep 2023 |
25 Dec 2025 |
CPAI-2023-0689
|
|
CVE-2023-35166
|
XWiki Command Injection (CVE-2023-35166)
|
|
High
|
18 May 2023 |
25 Dec 2025 |
CPAI-2022-1531
|
|
CVE-2022-2234
|
mySCADA myPRO Command Injection (CVE-2022-2234)
|
|
High
|
21 Feb 2023 |
25 Dec 2025 |
CPAI-2020-3627
|
|
CVE-2020-10931
|
Memcached Denial of Service (CVE-2020-10931)
|
|
Critical
|
8 Jan 2023 |
25 Dec 2025 |
CPAI-2021-1143
|
|
CVE-2021-45392 CVE-2021-46408 CVE-2022-45979 CVE-2022-45995 CVE-2023-49044
|
Tenda AX Routers Buffer Overflow (CVE-2021-45392; CVE-2021-46408; CVE-2022-45979; CVE-2022-45995; CVE-2023-49044)
|
|
High
|
25 Jul 2023 |
22 Dec 2025 |
CPAI-2023-2990
|
|
CVE-2023-36932
|
Progress MOVEit Transfer SQL Injection (CVE-2023-36932)
|
|
Critical
|
21 Mar 2023 |
21 Dec 2025 |
CPAI-2025-9221
|
|
|
Vulnerability Scanning Techniques
|
|
Critical
|
6 Sep 2023 |
21 Dec 2025 |
CPAI-2025-8999
|
|
CVE-2019-8331 CVE-2020-11110 CVE-2020-35946 CVE-2022-0963 CVE-2022-42141 CVE-2022-44957 CVE-2023-27008 CVE-2023-33408 CVE-2023-36287 CVE-2023-4636 CVE-2024-30989 CVE-2024-3378 CVE-2025-49541 CVE-2025-49543
|
Cross-Site Scripting Over HTTP (CVE-2019-8331; CVE-2020-11110; CVE-2020-35946; CVE-2022-0963; CVE-2022-42141; CVE-2022-44957; CVE-2023-27008; CVE-2023-33408; CVE-2023-36287; CVE-2023-4636; CVE-2024-30989; CVE-2024-3378; CVE-2025-49541; CVE-2025-49543)
|
|
High
|
25 Jul 2023 |
17 Dec 2025 |
CPAI-2023-0559
|
|
CVE-2023-36932
|
Progress MOVEit Transfer SQL Injection (CVE-2023-36932)
|
|
High
|
24 Dec 2023 |
17 Dec 2025 |
CPAI-2023-1401
|
|
CVE-2023-42326
|
Netgate pfSense Command Injection (CVE-2023-42326)
|
|
High
|
11 Jul 2023 |
17 Dec 2025 |
CPAI-2023-0446
|
|
CVE-2023-2522
|
Chengdu Command Injection (CVE-2023-2522)
|
|
Critical
|
19 Feb 2023 |
17 Dec 2025 |
CPAI-2024-3429
|
|
CVE-2022-45663 CVE-2022-45664 CVE-2022-45665 CVE-2022-45666 CVE-2022-45669 CVE-2022-45670 CVE-2022-45671 CVE-2024-4252 CVE-2024-7582 CVE-2024-7583 CVE-2024-7584 CVE-2024-7585
|
Tenda i22 Buffer Overflow (CVE-2022-45663; CVE-2022-45664; CVE-2022-45665; CVE-2022-45666; CVE-2022-45669; CVE-2022-45670; CVE-2022-45671; CVE-2024-4252; CVE-2024-7582; CVE-2024-7583; CVE-2024-7584; CVE-2024-7585)
|
|
Critical
|
12 Jan 2023 |
17 Dec 2025 |
CPAI-2022-3004
|
|
CVE-2022-46164
|
NodeBB Privilege Escalation (CVE-2022-46164)
|
|
Critical
|
15 Jun 2023 |
15 Dec 2025 |
CPAI-2025-8505
|
|
CVE-2023-25233 CVE-2023-25234 CVE-2024-32316 CVE-2024-32318 CVE-2024-32320 CVE-2024-3905 CVE-2024-3906 CVE-2024-3907 CVE-2024-3909 CVE-2024-3910 CVE-2025-7586
|
Tenda AC500 Buffer Overflow (CVE-2023-25233; CVE-2023-25234; CVE-2024-32316; CVE-2024-32318; CVE-2024-32320; CVE-2024-3905; CVE-2024-3906; CVE-2024-3907; CVE-2024-3909; CVE-2024-3910; CVE-2025-7586)
|
|
High
|
11 Jul 2023 |
10 Dec 2025 |
CPAI-2023-0530
|
Adobe APSB23-40
|
CVE-2023-29300 CVE-2023-38203
|
Adobe ColdFusion Insecure Deserialization (CVE-2023-29300; CVE-2023-38203)
|