Export CSV

Products

1 vendor
VendorProductsCVEsKEVAvg EPSSWorst Severity
13033.7%CRITICAL

Related CVEs

3
CVE IDDescriptionSeverityCVSSKEVEPSSPublished
CVE-2025-65519mayswind ezbookkeeping versions 1.2.0 and earlier contain a critical vulnerability in JSON and XML file import processing. The application fails to validate nesting depth during parsing operations, allowing authenticated attackers to trigger denial of service conditions by uploading deeply nested malicious files. This results in CPU exhaustion, service degradation, or complete service unavailability.MEDIUM6.520.5%Feb 18, 2026
CVE-2024-57604An issue in MaysWind ezBookkeeping 0.7.0 allows a remote attacker to escalate privileges via the token component.CRITICAL9.847.8%Feb 12, 2025
CVE-2024-57603An issue in MaysWind ezBookkeeping 0.7.0 allows a remote attacker to escalate privileges via the lack of rate limiting.MEDIUM6.332.9%Feb 12, 2025