Known Vulnerabilities for products from Xxyopen
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Xxyopen".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2025-6535 json | A vulnerability has been found in xxyopen/201206030 novel-plus up to 5.1.3 and classified as critical. This vulnerability aff... | Not Provided | 2025-06-24 | 2026-04-29 |
| CVE-2025-6534 json | A vulnerability, which was classified as problematic, was found in xxyopen/201206030 novel-plus up to 5.1.3. This affects the... | Not Provided | 2025-06-24 | 2026-04-29 |
| CVE-2025-6533 json | A vulnerability, which was classified as critical, has been found in xxyopen/201206030 novel-plus up to 5.1.3. Affected by th... | Not Provided | 2025-06-24 | 2026-04-29 |
| CVE-2024-0941 json | 9.8 - CRITICAL | 2024-01-26 | 2024-02-01 | |
| CVE-2024-0655 json | 9.8 - CRITICAL | 2024-01-18 | 2024-01-25 | |
| CVE-2023-46981 json | SQL injection vulnerability in Novel-Plus v.4.2.0 allows a remote attacker to execute arbitrary code via a crafted script to ... | 9.8 - CRITICAL | 2023-11-05 | 2023-11-13 |
| CVE-2023-41443 json | SQL injection vulnerability in Novel-Plus v.4.1.0 allows a remote attacker to execute arbitrary code via a crafted script to ... | 7.2 - HIGH | 2023-09-18 | 2023-09-20 |
| CVE-2023-37847 json | novel-plus v3.6.2 was discovered to contain a SQL injection vulnerability. | Not Provided | 2023-08-14 | 2026-07-09 |
| CVE-2023-30058 json | novel-plus 3.6.2 is vulnerable to SQL Injection. | 9.8 - CRITICAL | 2023-09-11 | 2023-10-15 |
| CVE-2023-7171 json | novel-plus 3.6.2 is vulnerable to SQL Injection. | 4.8 - MEDIUM | 2023-12-29 | 2024-01-05 |
| CVE-2023-7166 json | novel-plus 3.6.2 is vulnerable to SQL Injection. | 5.4 - MEDIUM | 2023-12-29 | 2024-01-05 |
| CVE-2023-2041 json | A vulnerability classified as critical was found in novel-plus 3.6.2. Affected by this vulnerability is an unknown functional... | 8.8 - HIGH | 2023-04-14 | 2023-11-07 |
| CVE-2023-2040 json | A vulnerability classified as critical has been found in novel-plus 3.6.2. Affected is an unknown function of the file /news/... | 8.8 - HIGH | 2023-04-14 | 2023-11-07 |
| CVE-2023-2039 json | A vulnerability was found in novel-plus 3.6.2. It has been rated as critical. This issue affects some unknown processing of t... | 8.8 - HIGH | 2023-04-14 | 2023-11-07 |
| CVE-2023-1607 json | A vulnerability was found in novel-plus 3.6.2. It has been classified as critical. This affects an unknown part of the file /... | 8.8 - HIGH | 2023-03-23 | 2023-11-07 |
| CVE-2023-1606 json | A vulnerability was found in novel-plus 3.6.2 and classified as critical. Affected by this issue is some unknown functionalit... | 9.8 - CRITICAL | 2023-03-23 | 2023-11-07 |
| CVE-2023-1595 json | A vulnerability has been found in novel-plus 3.6.2 and classified as critical. Affected by this vulnerability is an unknown f... | 7.2 - HIGH | 2023-03-23 | 2023-11-07 |
| CVE-2023-1594 json | A vulnerability, which was classified as critical, was found in novel-plus 3.6.2. Affected is the function MenuService of the... | 9.8 - CRITICAL | 2023-03-23 | 2023-11-07 |
| CVE-2022-36672 json | Novel-Plus v3.6.2 was discovered to contain a hard-coded JWT key located in the project config file. This vulnerability allow... | 9.8 - CRITICAL | 2022-09-01 | 2023-09-13 |
| CVE-2022-36671 json | Novel-Plus v3.6.2 was discovered to contain an arbitrary file download vulnerability via the background file download API. | 7.5 - HIGH | 2022-09-01 | 2023-09-13 |