Known Vulnerabilities for Flex by Flex Project
Listed below are 2 of the newest known vulnerabilities associated with "Flex" by "Flex Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-24614 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Devsbrain Flex QR Code ... | Not Provided | 2026-01-23 | 2026-04-01 |
| CVE-2026-4157 json | ChargePoint Home Flex revssh Service Command Injection Remote Code Execution Vulnerability. This vulnerability allows network... | Not Provided | 2026-04-11 | 2026-04-11 |
| CVE-2026-4156 json | ChargePoint Home Flex OCPP getpreq Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows... | Not Provided | 2026-04-11 | 2026-04-11 |
| CVE-2026-4155 json | ChargePoint Home Flex Inclusion of Sensitive Information in Source Code Information Disclosure Vulnerability. This vulnerabil... | Not Provided | 2026-04-11 | 2026-04-11 |
| CVE-2025-30850 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sfaerber Dr. Flex dr-fl... | Not Provided | 2025-03-27 | 2026-04-23 |
| CVE-2025-12673 json | The Flex QR Code Generator plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation i... | Not Provided | 2025-12-06 | 2026-04-08 |
| CVE-2025-10041 json | The Flex QR Code Generator plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation i... | Not Provided | 2025-10-15 | 2026-04-08 |
| CVE-2025-6256 json | The Flex Guten plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘thumbnailHoverEffect’ parameter... | Not Provided | 2025-08-06 | 2026-04-08 |
| CVE-2019-6293 json | An issue was discovered in the function mark_beginning_as_normal in nfa.c in flex 2.6.4. There is a stack exhaustion problem ... | 5.5 - MEDIUM | 2019-01-15 | 2023-10-06 |
| CVE-2016-6354 json | Heap-based buffer overflow in the yy_get_next_buffer function in Flex before 2.6.1 might allow context-dependent attackers to... | 9.8 - CRITICAL | 2016-09-21 | 2023-10-06 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Flex Project | Flex | 2.6.4 | |||
| Application | Flex Project | Flex | 2.6.3 | |||
| Application | Flex Project | Flex | 2.6.2 | |||
| Application | Flex Project | Flex | 2.6.1 | |||
| Application | Flex Project | Flex | 2.6.0 | |||
| Application | Flex Project | Flex | 2.5.5c | |||
| Application | Flex Project | Flex | 2.5.5b | |||
| Application | Flex Project | Flex | 2.5.39 | |||
| Application | Flex Project | Flex | 2.5.37 | |||
| Application | Flex Project | Flex | 2.5.36 | |||
| Application | Flex Project | Flex | 2.5.35 | |||
| Application | Flex Project | Flex | 2.5.34 | |||
| Application | Flex Project | Flex | 2.5.33 | |||
| Application | Flex Project | Flex | 2.5.32 | |||
| Application | Flex Project | Flex | 2.5.31 | |||
| Application | Flex Project | Flex | 2.5.30 | |||
| Application | Flex Project | Flex | 2.5.29 | |||
| Application | Flex Project | Flex | 2.5.28 | |||
| Application | Flex Project | Flex | 2.5.27 | |||
| Application | Flex Project | Flex | 2.5.26 |