socialengine
Web & CMS Pluginscommercial
Top products
Latest CVEs
The 7 most recently published vulnerabilities affecting socialengine.
- CVE-2026-41461SocialEngine <= 7.8.0 Blind SSRF via /core/link/preview8.5
- CVE-2026-41460SocialEngine <= 7.8.0 SQL Injection via activity/index/get-memberall9.8
- CVE-2012-6720Multiple cross-site scripting (XSS) vulnerabilities in SocialEngine before 4.2.4 allow remote attackers to inject arbitrary web script or HTML via the (1) title parameter to music/create, (2) locat...6.1
- CVE-2012-6721Multiple cross-site request forgery (CSRF) vulnerabilities in the (1) Forum, (2) Event, and (3) Classifieds plugins in SocialEngine before 4.2.4.6.3
- CVE-2008-6121CRLF injection vulnerability in SocialEngine (SE) 2.7 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the PHPSESSID cookie.7.5
- CVE-2008-6120SQL injection vulnerability in profile_comments.php in SocialEngine (SE) 2.7 and earlier allows remote attackers to execute arbitrary SQL commands via the comment_secure parameter.7.5
- CVE-2009-0400SQL injection vulnerability in blog.php in SocialEngine 3.06 trial allows remote attackers to execute arbitrary SQL commands via the category_id parameter.6.8