CyStack logo
  • Products & Services
  • Solutions
  • Pricing
  • Company
  • Resources
En

en

Security Research

Security Findings

CVEs, bug bounty submissions and public research from CyStack security researchers — disclosed responsibly and shared with the community.

67
Total disclosures
27
Public CVEs
30
Bug bounty
10
Talks & papers
All years
All researchers
Newest first
Showing 20 of 27 vulnerabilities
ID
Title
Vendor / Product
Severity
CVSS
Researcher
Published
CVE-2026-23899
Joomla! Core - Improper access check in webservice endpoints
An improper access check in Joomla's webservice endpoints allows unauthorized users to access sensitive information. This vulnerability can potentially lead to data exposure and unauthorized actions within the system. It is crucial for users to update their Joomla installations to mitigate this risk.
auth-bypassaccess-controlwebservice
Joomla
Joomla! Core
High
8.8/10
ThanhNT
Apr 1, 2026
CVE-2026-21630
Joomla! Core SQL injection
A SQL injection vulnerability has been identified in the Joomla! core, specifically in the articles webservice endpoint of the com_content component. This flaw allows attackers to manipulate SQL queries, potentially leading to unauthorized data access. Users are advised to update their Joomla! installations to mitigate this risk.
sql-injectionjoomlawebservice
Joomla!
Joomla! Core
Medium
8.8/10
ThanhNT
Apr 1, 2026
CVE-2025-7632
ManageEngine Exchange Reporter Plus - Stored XSS in Public Folders report
ManageEngine Exchange Reporter Plus versions 5723 and below are vulnerable to a Stored XSS vulnerability in the Public Folders report. This issue could allow an attacker to inject malicious scripts into the application, potentially compromising user data and session integrity.
xsssecurityvulnerability
ManageEngine
Exchange Reporter Plus
Medium
7.3/10
KhanhVN
Nov 11, 2025
CVE-2025-7430
ManageEngine Exchange Reporter Plus - Stored XSS in Folder Message Count and Size report
ManageEngine Exchange Reporter Plus versions 5723 and below are affected by a stored XSS vulnerability in the Folder Message Count and Size report. This vulnerability could allow an attacker to execute malicious scripts in the context of the user's session. Users are advised to review the advisory for mitigation steps.
xssvulnerabilitysecurity
ManageEngine
Exchange Reporter Plus
Medium
7.3/10
KhanhVN
Nov 11, 2025
CVE-2025-7429
ManageEngine Exchange Reporter Plus - Stored XSS in Mails Deleted or Moved report
ManageEngine Exchange Reporter Plus versions 5723 and below are vulnerable to a Stored XSS vulnerability in the Mails Deleted or Moved report. This issue could allow an attacker to execute arbitrary scripts in the context of the user's session, potentially compromising sensitive information.
xsssecurityvulnerability
ManageEngine
Exchange Reporter Plus
Medium
7.3/10
KhanhVN
Nov 11, 2025
CVE-2025-5347
ManageEngine Exchange Reporter Plus - Stored XSS in reports module
ManageEngine Exchange Reporter Plus versions prior to 5723 are affected by a Stored Cross Site Scripting (XSS) vulnerability in the reports module. This vulnerability allows an attacker to inject malicious scripts into the reports, which can be executed in the context of other users' sessions.
xsssecurityvulnerability
ManageEngine
Exchange Reporter Plus
Medium
6.3/10
KhanhVN
Oct 30, 2025
CVE-2025-5343
ManageEngine Exchange Reporter Plus - Stored XSS in Instant Search option
ManageEngine Exchange Reporter Plus versions through 5721 are vulnerable to a Stored Cross Site Scripting (XSS) issue in the Instant Search option. This vulnerability could allow an attacker to inject malicious scripts into the application, potentially compromising user data and session integrity.
xsssecurityvulnerability
ManageEngine
Exchange Reporter Plus
Medium
6.3/10
KhanhVN
Oct 30, 2025
CVE-2025-5342
ManageEngine Exchange Reporter Plus - ReDoS in search module
ManageEngine Exchange Reporter Plus is vulnerable to a Regular expression Denial of Service (ReDoS) attack in its search module. This vulnerability can be exploited by authenticated users, potentially leading to service disruption. Users are advised to review the provided advisory for mitigation steps.
redosnetwork
ManageEngine
Exchange Reporter Plus
Medium
4.3/10
KhanhVN
Oct 30, 2025
CVE-2025-59837
Server-Side Request Forgery in astrojs
Astro, a web framework, has a vulnerability in its image proxy feature that allows attackers to bypass domain validation. This can lead to server-side request forgery (SSRF) and potentially cross-site scripting (XSS). The issue affects versions 5.13.4 to 5.13.9 and is fixed in version 5.13.10.
ssrfxssweb-framework
Astro
High
7.2/10
TrungNH
Oct 28, 2025
CVE-2025-6239
ManageEngine Applications Manager - Information disclosure in File/Directory monitor
ManageEngine Applications Manager versions 176800 and below are affected by an information disclosure vulnerability in the File/Directory monitor. This issue can expose sensitive information when the content check feature is enabled. Users are advised to upgrade to version 176701 or 176900 and above to mitigate this risk.
information-disclosurevulnerabilitymanageengine
ManageEngine
Applications Manager
Medium
6.5/10
KhanhVN
Oct 21, 2025
CVE-2025-27930
ManageEngine Applications Manager - Stored XSS in File/Directory monitor
ManageEngine Applications Manager versions 176600 and prior are vulnerable to a stored cross-site scripting (XSS) issue in the File/Directory monitor. This vulnerability could allow an attacker to inject malicious scripts into the application, affecting users who access the compromised content. Users are advised to upgrade to version 176700 or later to mitigate this risk.
xssvulnerabilitysecurity
ManageEngine
Applications Manager
Medium
6.4/10
KhanhVN
Jul 23, 2025
CVE-2025-5366
ManageEngine Exchange Reporter Plus - Stored XSS in folder-wise read mails with subject report
ManageEngine Exchange Reporter Plus versions 5722 and below are vulnerable to a Stored XSS attack in the Folder-wise read mails with subject report feature. This vulnerability could allow an attacker to inject malicious scripts that may be executed in the context of the user's session.
xssvulnerabilitymanageengine
ManageEngine
Exchange Reporter Plus
High
8.1/10
KhanhVN
Jun 26, 2025
CVE-2025-3835
ManageEngine Exchange Reporter Plus - Remote code execution in Content Search module
ManageEngine Exchange Reporter Plus versions 5721 and prior are vulnerable to a remote code execution (RCE) flaw in the Content Search module. This vulnerability could allow an attacker to execute arbitrary code on the affected system, potentially leading to unauthorized access and control.
rcevulnerabilitymanageengine
ManageEngine
Exchange Reporter Plus
Critical
9.6/10
KhanhVN
Jun 9, 2025
CVE-2022-41938
Stored XSS leads to account takeover in Flarum
A stored XSS vulnerability in Flarum allows attackers to inject malicious HTML through discussion titles, leading to potential account takeover. This issue affects all Flarum installations from version 1.5.0 to 1.6.1. Users are advised to upgrade to version 1.6.2 to mitigate the risk.
xssaccount-takeovervulnerability
Flarum
Critical
9.0/10
DangVH
Nov 19, 2022
CVE-2021-44832
Cyclos < 4.14.15 – Remote code execution
Cyclos versions prior to 4.14.15 are vulnerable to a remote code execution (RCE) attack. This vulnerability allows an attacker to execute arbitrary code on the server, potentially compromising sensitive data and system integrity.
rcecriticalvulnerability
Cyclos
Critical
6.6/10
TrungNH
Dec 28, 2021
CVE-2019-19307
Cesanta Mongoose 6.16 - Integer overflow
An integer overflow vulnerability in Cesanta Mongoose version 6.16 can be exploited by an attacker to trigger a remote denial of service (DoS) condition, potentially leading to an infinite loop or an out-of-bounds write. This issue arises from the handling of crafted MQTT protocol packets.
dosinteger-overflowmqtt
Cesanta
Mongoose
Critical
9.8/10
TuanDM
Nov 26, 2019
CVE-2019-16057
D-Link DNS-320 ShareCenter <= 2.05.B10 - Unauthenticated Remote code execution
The D-Link DNS-320 ShareCenter versions up to 2.05.B10 are vulnerable to unauthenticated remote code execution due to a flaw in the login_mgr.cgi script. This vulnerability allows attackers to execute arbitrary commands on the device without authentication, posing a significant security risk.
rceunauthenticatedcritical
D-Link
DNS-320 ShareCenter
Critical
9.8/10
TrungNH
Sep 16, 2019
CVE-2019-13488
Trape 2.0 SQLi and stored XSS
Trape 2.0 has vulnerabilities related to SQL injection (SQLi) and stored cross-site scripting (XSS). These flaws allow attackers to execute arbitrary SQL commands and inject malicious scripts, potentially compromising user data and application integrity.
sql-injectionxssvulnerability
CyStack
Trape
High
6.1/10
TrungNH +1
Jul 10, 2019
CVE-2019-11359
Multiple XSS vulnerabilities in i-librarian 4.10
Multiple cross-site scripting (XSS) vulnerabilities have been identified in i-Librarian version 4.10. These vulnerabilities allow remote attackers to inject arbitrary web scripts or HTML through various parameters, potentially compromising user data and application integrity.
xss
I
i-Librarian
Medium
6.1/10
AnhNT
Apr 20, 2019
CVE-2019-5417
Path traversal vulnerability in serve npm package version
A path traversal vulnerability in the serve npm package version 7.0.1 allows attackers to read the contents of arbitrary files on the remote server. This can lead to unauthorized access to sensitive information stored on the server.
path-traversalnpmvulnerability
serve
Critical
7.5/10
TungNH
Mar 21, 2019