Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Security Intel Hub 44+

Curated security advisories, vulnerability analyses, and exploit write-ups — auto-cleaned and translated to English. Updated continuously.

Examples: RCE · SSRF · GHSA · log4j
Filter
Clear filters
CVE-2025-55167: SQL Injection Vulnerability Analysis
github.com · 2025-08-14

### Key Information #### Vulnerability Overview - **Vulnerability Type**: SQL Injection - **Affected Endpoint**: `/html/funcionario/dependente_remover.php` - **Affected Parameter**: `id_dependente` - …

Read more
CVSS 6.5
WeGIA personalizacao.php Reflected XSS Vulnerability (CVE-2025-54077)
github.com · 2025-07-19

### Key Information #### Vulnerability Overview - **Vulnerability Type**: Reflected Cross-Site Scripting (XSS) - **Affected Endpoint**: `personalizacao.php` - **Parameter**: `err` #### Affected and Fi…

Read more
CVSS 6.5
WeGIA personalizacao_imagem.php Reflected XSS Vulnerability (CVE-2025-54078)
github.com · 2025-07-19

### Critical Vulnerability Information #### Vulnerability Type - **Cross-Site Scripting (XSS)** #### Affected Endpoint and Parameter - **Vulnerable Endpoint**: `personalizacao_imagem.php` - **Paramete…

Read more
Reflected XSS in wegia personalizacao_selecao.php (<=3.4.4)
github.com · 2025-07-17

### Key Information #### Vulnerability Type - **Cross-Site Scripting (XSS)** #### Affected Versions - **` - **Request Example**: ``` POST /html/personalizacao_selecao.php HTTP/1.1 Host: demo.wegia.org…

Read more
wegia <=3.4.4 Reflected XSS Vulnerability in nome_car Parameter
github.com · 2025-07-17

### Key Information #### Vulnerability Type - **Cross-Site Scripting (XSS)**: Reflected Cross-Site Scripting #### Affected Versions - **Affected Versions**: ` - **Request Example**: ```http POST /html…

Read more
WeGIA Pet Management Stored XSS in adicionar_especie.php
github.com · 2025-07-17

### Critical Vulnerability Information #### Vulnerability Type - **Cross-Site Scripting (XSS)**: Stored XSS #### Affected Endpoint and Parameter - **Affected Endpoint**: `adicionar_especie.php` - **Pa…

Read more
WeGIA Stored XSS Vulnerability (CVE-2025-5931)
github.com · 2025-07-17

### Critical Vulnerability Information #### Vulnerability Type - **Cross-Site Scripting (XSS)**: Stored #### Affected Endpoint and Parameter - **Endpoint**: `adicionar_raca.php` - **Parameter**: `raca…

Read more
Stored XSS in Wegia Saúde <= 3.4.4
github.com · 2025-07-17

### Critical Vulnerability Information #### Vulnerability Type - **Cross-Site Scripting (XSS)**: Stored Cross-Site Scripting #### Affected Endpoint and Parameter - **Vulnerable Endpoint**: `adicionar_…

Read more
Stored XSS in WeGIA app (CVE-2025-53929) with PoC
github.com · 2025-07-17

### Key Information #### Vulnerability Overview - **Type**: Stored Cross-Site Scripting (XSS) - **Affected Endpoint**: `adicionar_cor.php` - **Parameter**: `cor` #### Affected and Fixed Versions - **A…

Read more
Wegia System Authentication Bypass via Missing Session Validation
github.com · 2025-07-17

### Critical Vulnerability Information #### Vulnerability Overview - **Vulnerability Type**: Authentication Bypass - **Cause**: Missing Session Validation - **Affected Endpoints**: Multiple endpoints,…

Read more
Reflected XSS in WeGIA cadastro_adotante.php (CWE-79)
github.com · 2025-07-17

### Key Information #### Vulnerability Overview - **Vulnerability Type**: Reflected Cross-Site Scripting (XSS) - **Affected Endpoint**: `cadastro_adotante.php` - **Parameter**: `cpf` #### Affected and…

Read more
WeGIA <=3.4.4 Time-based Blind SQL Injection (CVE-2025-53023)
github.com · 2025-07-15

### Critical Vulnerability Information #### Vulnerability Type - **SQL Injection (Time-based Blind SQLi)** #### Affected Scope - **Affected Versions**: <= 3.4.4 - **Fixed Version**: 3.4.5 #### Vulnera…

Read more
Premium intel
CVSS 9.8
CVE-2025-53529: SQL Injection Vulnerability Analysis
github.com · 2025-07-12

### Key Information #### Vulnerability Overview - **Vulnerability Type**: SQL Injection - **Affected File**: html/funcionario/profile_funcionario.php - **Parameter**: id_funcionario #### Affected Vers…

Read more
Wegia <=3.4.2 Reflected XSS Vulnerability (CVE-2025-53377)
github.com · 2025-07-12

### Key Information #### Vulnerability Type - **Cross-Site Scripting (XSS)**: Reflected Cross-Site Scripting #### Affected Versions - **Affected Versions**: alert(1337)` - **Request Example**: ```http…

Read more
WeGIA Uncontrolled Resource Consumption Vulnerability (CVE-2025-53530) and DoS PoC
github.com · 2025-07-12

### Critical Vulnerability Information #### Vulnerability Overview - **Type**: Uncontrolled Resource Consumption - **Affected Versions**: < 3.2.9 - **Fixed Version**: 3.3.0 - **CVE ID**: CVE-2025-5353…

Read more
WeGIA Server Uncontrolled Resource Consumption Vulnerability (DoS, CVSS 9.2)
github.com · 2025-07-12

### Critical Vulnerability Information #### Vulnerability Overview - **Type**: Uncontrolled Resource Consumption - **Affected Versions**: `), resulting in resource exhaustion and server instability. #…

Read more
WeGIA atendidoo Reflected XSS in profile_familiar.php (id_dependente)
github.com · 2025-07-12

### Critical Vulnerability Information #### Vulnerability Type - **Cross-Site Scripting (XSS)** #### Affected Endpoint and Parameter - **Vulnerable Endpoint**: `/html/atendidoo/profile_familiar.php` -…

Read more
Wegia Memorando <=3.4.2 Stored XSS Vulnerability (CVE-2025-5356)
github.com · 2025-07-12

### Critical Vulnerability Information #### Vulnerability Type - **XSS (Stored XSS)** #### Affected Versions - **alert('XSS')` was inserted into the text field when creating a new memo. #### PoC 1. Ac…

Read more
Premium intel
CVSS 9.8
Wegia debug_info.php Blind OS Command Injection (Critical)
github.com · 2025-07-06

### Critical Vulnerability Information #### Vulnerability Type - **OS Command Injection (Blind Time-Based)** #### Affected Versions - **test' > /var/www/prava.html" ``` 2. **Verification** - After exe…

Read more
WeGIA Stored XSS Vulnerability (CVE-2025-30362) <3.2.8
github.com · 2025-03-29

### Critical Vulnerability Information #### Vulnerability Type - **Stored XSS** (Stored Cross-Site Scripting) #### Affected Versions - **Affected Versions**: alert('Alert: XSS');` - **Effect**: After …

Read more

All articles are auto-cleaned (markdown extraction + LLM noise removal) and translated to English by our offline pipeline. Source URL is always preserved at the bottom of each article.

Want a specific source covered? Email us — we add new feeds weekly.