Known Vulnerabilities for Utf-8 Cutenews by Korn19
Listed below are 6 of the newest known vulnerabilities associated with "Utf-8 Cutenews" by "Korn19".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-36472 json | CuteNews v.2.1.2 is vulnerable to Cross Site Scripting (XSS). Improper neutralization of the __referer value 2.0.1 allows a r... | Not Provided | 2026-09-21 | 2026-09-21 |
| CVE-2026-36471 json | Deserialization of Untrusted Data of the __post_data parameter in cn_parse_url() in CuteNews v.2.1.2 allows a remote attacker... | Not Provided | 2026-09-21 | 2026-09-25 |
| CVE-2026-36470 json | CuteNews v.2.1.2 is vulnerable to Cross Site Scripting (XSS) in index.php. The value of the "Referer" header is copied into t... | Not Provided | 2026-09-21 | 2026-09-22 |
| CVE-2026-36469 json | CuteNews v.2.1.2 is vulnerable to Server-Side Request Forgery (SSRF) in core/modules/media.php -- upload_from_inet (Media Man... | Not Provided | 2026-09-21 | 2026-09-24 |
| CVE-2026-36468 json | Cross-site Scripting (XSS) in index.php in CuteNews v.2.1.2 allows remote unauthenticated attackers to supply an arbitrarily ... | Not Provided | 2026-09-21 | 2026-09-21 |
| CVE-2026-36467 json | Unrestricted Upload of File with Dangerous Type in core/modules/media.php in CuteNews v.2.1.2 allows remote authenticated use... | Not Provided | 2026-09-21 | 2026-09-21 |
| CVE-2009-4250 json | Not Provided | 2009-12-10 | 2026-04-23 | |
| CVE-2009-4175 json | Not Provided | 2009-12-02 | 2026-04-23 | |
| CVE-2009-4174 json | Not Provided | 2009-12-02 | 2026-04-23 | |
| CVE-2009-4173 json | Not Provided | 2009-12-02 | 2026-04-23 |