Products: 2
    Vulnerabilities: 42
    Known Exploited: 0
    0
    Critical Level Threats
    7
    High Level Threats
    30
    Medium Level Threats
    5
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-50743

    A CSRF vulnerability exists in the `zone-include.php` script in Revive Adserver 6.0.7. Linking and unlinking banners or campaigns to zones could be triggered via crafted GET or POST requests without any verification of the CSRF token, allowing an attacker to perform these actions on behalf of an authenticated administrator.

    Last Modified: Jul 29, 2026
    Published: Jul 20, 2026

    CVE-2026-50745

    Reflected XSS via Unsanitized URL in Revive Adserver Stats Video Script

    Last Modified: Aug 12, 2026
    Published: Jun 26, 2026

    CVE-2026-50740

    Reflected XSS via zone‑include.php Refresh Parameter in Revive Adserver 6.0.7 and Earlier

    Last Modified: Jul 08, 2026
    Published: Jun 26, 2026

    CVE-2026-50742

    A stored XSS vulnerabilities exists in the `maintenance-acl-check.php` and `maintenance-banners-check.php` tools of Revive Adserver 6.0.7. The issue was caused by entity names being displayed without proper escaping when inconsistencies were detected. Whether the XSS payload is executed when an administrator uses the affected maintenance tools is not entirely under the attacker's control.

    Last Modified: Aug 12, 2026
    Published: Jun 26, 2026

    CVE-2026-50741

    Plugin Identifier Injection Bypass in Revive Adserver

    Last Modified: Aug 03, 2026
    Published: Jun 26, 2026
    Items Per Page
    Revive Vulnerabilities & Security CVEs | CVE-DB