🛡️ Vulnerabilities
Latest Vulnerabilities coverage curated from trusted cybersecurity sources.
-
CVE-2025-11242 - SSRF in Teknolist Computer's Okulistik
Latest High/Critical Vulnerabilitiy Feed — 2026-02-10T09:16:09.200ZCVE ID : CVE-2025-11242 Published : Feb. 10, 2026, 9:16 a.m. | 4 hours, 24 minutes ago Description : Server-Side Request Forgery (SSRF) vulnerability in Teknolist Computer Systems Software Publishing Industry and Trade Inc. Okulistik allows Server Side Request Forgery.This issue affects Okulistik: through 21102025....
-
CVE-2026-2097 - Flowring|Agentflow - Arbitrary File Upload
Latest High/Critical Vulnerabilitiy Feed — 2026-02-10T07:16:14.303ZCVE ID : CVE-2026-2097 Published : Feb. 10, 2026, 7:16 a.m. | 6 hours, 24 minutes ago Description : Agentflow developed by Flowring has an Arbitrary File Upload vulnerability, allowing authenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server....
-
CVE-2026-2096 - Flowring|Agentflow - Missing Authenticaton
Latest High/Critical Vulnerabilitiy Feed — 2026-02-10T07:16:14.110ZCVE ID : CVE-2026-2096 Published : Feb. 10, 2026, 7:16 a.m. | 6 hours, 24 minutes ago Description : Agentflow developed by Flowring has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to read, modify, and delete database contents by using a specific functionality. Severity: 9.8 |...
-
CVE-2026-2095 - Flowring|Agentflow - Authentication Bypass
Latest High/Critical Vulnerabilitiy Feed — 2026-02-10T07:16:13.903ZCVE ID : CVE-2026-2095 Published : Feb. 10, 2026, 7:16 a.m. | 6 hours, 24 minutes ago Description : Agentflow developed by Flowring has an Authentication Bypass vulnerability, allowing unauthenticated remote attackers to exploit a specific functionality to obtain arbitrary user authentication token and log into the...
-
CVE-2026-2094 - Flowring|Docpedia - SQL Injection
Latest High/Critical Vulnerabilitiy Feed — 2026-02-10T07:16:13.707ZCVE ID : CVE-2026-2094 Published : Feb. 10, 2026, 7:16 a.m. | 6 hours, 24 minutes ago Description : Docpedia developed by Flowring has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents. Severity: 8.8 | HIGH Visit the...