Products: 2
Vulnerabilities: 6
Known Exploited: 0
1
Critical Level Threats
1
High Level Threats
2
Medium Level Threats
2
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2025-1084
Mindskip xzs-mysql 学之思开源考试系统 cross-site request forgery
Last Modified: Oct 10, 2025
Published: Feb 06, 2025
CVE-2025-1083
Mindskip xzs-mysql 学之思开源考试系统 CORS cross-domain policy
Last Modified: Oct 10, 2025
Published: Feb 06, 2025
CVE-2025-1082
Mindskip xzs-mysql 学之思开源考试系统 Exam Edit edit cross site scripting
Last Modified: Oct 15, 2025
Published: Feb 06, 2025
CVE-2024-29401
xzs-mysql 3.8 is vulnerable to Insufficient Session Expiration, which allows attackers to use the session of a deleted admin to do anything.
Last Modified: Sep 19, 2025
Published: Mar 26, 2024
CVE-2022-41431
xzs v3.8.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /admin/question/edit. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Title text field.
Last Modified: May 14, 2025
Published: Oct 17, 2022
Items Per Page
