Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

NeoRazorX — Vulnerabilities & Security Advisories 15

Browse all 15 CVE security advisories affecting NeoRazorX. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Neorazorx primarily develops web applications and security tools, with a focus on penetration testing frameworks. Historically, vulnerabilities associated with this entity commonly include remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from improper input validation and insecure design patterns. Security researchers have identified multiple critical vulnerabilities in its products, with 15 CVEs documented to date. While no major public security incidents have been widely reported, the consistent pattern of vulnerabilities suggests a need for rigorous security reviews in future development cycles.

CVE IDTitleCVSSSeverityPublished
CVE-2026-32699 FacturaScripts unauthorized modification of immutable nick field via EditUser controller — facturascriptsCWE-472 4.3 -2026-05-05
CVE-2026-25513 FacturaScripts has SQL Injection vulnerability in API ORDER BY Clause — facturascriptsCWE-89 8.8AIHighAI2026-02-04
CVE-2026-25514 FacturaScripts has SQL Injection vulnerability in Autocomplete Actions — facturascriptsCWE-20 6.5AIMediumAI2026-02-04
CVE-2026-23476 FacturaScripts Affected by Reflected XSS — facturascriptsCWE-79 5.4 Medium2026-02-02
CVE-2026-23997 FacturaScripts has a Stored Cross-Site Scripting (XSS) in "Observations" field via History View — facturascriptsCWE-79 8.0 High2026-02-02
CVE-2025-69210 FacturaScripts vulnerable to Stored Cross-Site Scripting (XSS) via XML File Upload — facturascriptsCWE-79 5.4 -2025-12-30
CVE-2022-2066 Cross-site Scripting (XSS) - Reflected in neorazorx/facturascripts — neorazorx/facturascriptsCWE-79 6.1 -2022-06-13
CVE-2022-2065 Cross-site Scripting (XSS) - Stored in neorazorx/facturascripts — neorazorx/facturascriptsCWE-79 5.4 -2022-06-13
CVE-2022-2016 Cross-site Scripting (XSS) - Reflected in neorazorx/facturascripts — neorazorx/facturascriptsCWE-79 6.1 -2022-06-07
CVE-2022-1988 Cross-site Scripting (XSS) - Generic in neorazorx/facturascripts — neorazorx/facturascriptsCWE-79 6.1 -2022-06-03
CVE-2022-1715 Account Takeover in neorazorx/facturascripts — neorazorx/facturascriptsCWE-1125 9.8 -2022-05-13
CVE-2022-1682 Reflected Xss using url based payload in neorazorx/facturascripts — neorazorx/facturascriptsCWE-79 6.1 -2022-05-12
CVE-2022-1571 Cross-site scripting - Reflected in Create Subaccount in neorazorx/facturascripts — neorazorx/facturascriptsCWE-79 6.1 -2022-05-04
CVE-2022-1514 Stored XSS via upload plugin functionality in zip format in neorazorx/facturascripts — neorazorx/facturascriptsCWE-79 5.4 -2022-04-28
CVE-2022-1457 Store XSS in title parameter executing at EditUser Page & EditProducto page in neorazorx/facturascripts — neorazorx/facturascriptsCWE-79 6.1 -2022-04-25

This page lists every published CVE security advisory associated with NeoRazorX. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.