yogeshojha
- Total products in the ecosystem
- 2
- Total vulnerabilities (90 days)
- 1
en
Verify to analyze this security profile
As of 09/18/2026, yogeshojha recorded 1 security vulnerabilities in the last 90 days across 1 products, including 1 rated High or above and 0 known exploited vulnerabilities (KEV) that should be prioritized for immediate remediation.
Over the last 90 days, rengine had the most security vulnerabilities in the yogeshojha ecosystem, with 1 vulnerabilities—approximately 100% of the provider's total vulnerabilities during this period.
CyStack VulnScan continuously discovers assets, validates vulnerabilities, and helps security teams prioritize remediation across the organization.
Explore CyStack VulnScan| Vulnerability | Exploitation status | Fix | Affected product | Published | Severity |
|---|---|---|---|---|---|
CVE-2026-92570reNgine through 2.2.0 Unauthorized Configuration File Read | Exploitation statusNot confirmed | FixYes | Affected productrengine | Published09/16/2026 | SeverityHigh |
CVE-2024-58287reNgine 2.2.0 Authenticated Command Injection via Scan Engine Configuration | Exploitation statusPublic exploit | FixNot confirmed | Affected productreNgine | Published12/11/2025 | SeverityHigh |
CVE-2025-61319 | Exploitation statusPublic exploit | FixNot confirmed | Affected productNot confirmed | Published10/10/2025 | SeverityMedium |
CVE-2025-24968Business Logic And Unrestricted Project Deletion Lead To Take Over the System in reNgine | Exploitation statusPublic exploit | FixNot confirmed | Affected productrengine | Published02/04/2025 | SeverityHigh |
CVE-2025-24967Stored XSS on Admin Panel When Deleting a User in reNgine | Exploitation statusPublic exploit | FixNot confirmed | Affected productrengine | Published02/04/2025 | SeverityHigh |
CVE-2025-24966HTML Injection in reNgine | Exploitation statusPublic exploit | FixNot confirmed | Affected productrengine | Published02/04/2025 | SeverityMedium |
CVE-2025-24899Disclosure of Sensitive User Information via API in reNgine | Exploitation statusPublic exploit | FixNot confirmed | Affected productrengine | Published02/03/2025 | SeverityHigh |
CVE-2025-24962Command Injection in reNgine | Exploitation statusPublic exploit | FixNot confirmed | Affected productrengine | Published02/03/2025 | SeverityHigh |
CVE-2024-43381reNgine vulnerable to Stored Cross-Site Scripting (XSS) via DNS Record Poisoning | Exploitation statusPublic exploit | FixYes | Affected productrengine | Published08/16/2024 | SeverityMedium |
CVE-2023-50094 | Exploitation statusPublic exploit | FixNot confirmed | Affected productNot confirmed | Published01/01/2024 | SeverityHigh |
CVE-2022-36566 | Exploitation statusNot confirmed | FixNot confirmed | Affected productNot confirmed | Published08/31/2022 | SeverityUnknown |
CVE-2022-1813OS Command Injection in yogeshojha/rengine | Exploitation statusNot confirmed | FixYes | Affected productyogeshojha/rengine | Published05/22/2022 | SeverityHigh |
CVE-2022-28995 | Exploitation statusNot confirmed | FixNot confirmed | Affected productNot confirmed | Published05/20/2022 | SeverityUnknown |
CVE-2021-38606 | Exploitation statusNot confirmed | FixNot confirmed | Affected productNot confirmed | Published08/12/2021 | SeverityUnknown |