CVE-2026-23731
- EPSS 0.27%
- Veröffentlicht 16.01.2026 19:50:16
- Zuletzt bearbeitet 30.01.2026 18:30:32
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, The web application is vulnerable to clickjacking attacks. The WeGIA application does not send any defensive HTTP headers related to framing protection. In particular, X-Frame-Option...
CVE-2026-23730
- EPSS 0.21%
- Veröffentlicht 16.01.2026 19:48:23
- Zuletzt bearbeitet 30.01.2026 18:30:19
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, an Open Redirect vulnerability was identified in the /WeGIA/controle/control.php endpoint of the WeGIA application, specifically through the nextPage parameter when combined with met...
CVE-2026-23729
- EPSS 0.21%
- Veröffentlicht 16.01.2026 19:47:10
- Zuletzt bearbeitet 30.01.2026 18:30:09
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, an Open Redirect vulnerability was identified in the /WeGIA/controle/control.php endpoint of the WeGIA application, specifically through the nextPage parameter when combined with met...
CVE-2026-23728
- EPSS 0.21%
- Veröffentlicht 16.01.2026 19:46:07
- Zuletzt bearbeitet 30.01.2026 18:29:58
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, an Open Redirect vulnerability was identified in the /WeGIA/controle/control.php endpoint of the WeGIA application, specifically through the nextPage parameter when combined with met...
CVE-2026-23727
- EPSS 0.18%
- Veröffentlicht 16.01.2026 19:41:46
- Zuletzt bearbeitet 30.01.2026 18:29:51
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, an Open Redirect vulnerability was identified in the /WeGIA/controle/control.php endpoint of the WeGIA application, specifically through the nextPage parameter when combined with met...
CVE-2026-23726
- EPSS 0.21%
- Veröffentlicht 16.01.2026 19:40:05
- Zuletzt bearbeitet 30.01.2026 18:29:14
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, An Open Redirect vulnerability was identified in the /WeGIA/controle/control.php endpoint of the WeGIA application, specifically through the nextPage parameter when combined with met...
CVE-2026-23725
- EPSS 0.21%
- Veröffentlicht 16.01.2026 19:38:27
- Zuletzt bearbeitet 30.01.2026 18:29:24
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, a Stored Cross-Site Scripting (XSS) vulnerability was identified in the html/pet/adotantes/cadastro_adotante.php and html/pet/adotantes/informacao_adotantes.php endpoint of the WeGIA...
CVE-2026-23724
- EPSS 0.18%
- Veröffentlicht 16.01.2026 19:37:06
- Zuletzt bearbeitet 30.01.2026 18:29:45
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, a Stored Cross-Site Scripting (XSS) vulnerability was identified in the html/atendido/cadastro_ocorrencia.php endpoint of the WeGIA application. The application does not sanitize use...
CVE-2026-23722
- EPSS 0.21%
- Veröffentlicht 16.01.2026 19:29:53
- Zuletzt bearbeitet 30.01.2026 18:27:52
WeGIA is a Web Manager for Charitable Institutions. Prior to 3.6.2, a Reflected Cross-Site Scripting (XSS) vulnerability was discovered in the WeGIA system, specifically within the html/memorando/insere_despacho.php file. The application fails to pro...
CVE-2026-23723
- EPSS 0.38%
- Veröffentlicht 16.01.2026 19:27:26
- Zuletzt bearbeitet 30.01.2026 18:28:51
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, an authenticated SQL Injection vulnerability was identified in the Atendido_ocorrenciaControle endpoint via the id_memorando parameter. This flaw allows for full database exfiltratio...