No record in this batch publishes a fixed version in held sources.
No record in this batch is listed by CISA in held sources.
Every record names something of its own, listed against it below.
Most commonly mapped weakness across the batch: CWE-79 Improper Neutralization of Input During…
What this page does not cover
This batch is 26 of the 32 records that cite the same advisory. The other 6 are different findings announced alongside it.
None of those 6 is grouped with any other. Each one has its own record page and nothing else.
The batch is what one advisory announced. It is not every record sharing this weakness, this product or this mechanism, and nothing here is scoped to any estate.
Listed for shared announcement, not shared vulnerability. Each record here is its own finding with its own page, and fixing one does not address another.
CVE-2025-41036data[admin][description data[admin][f_name data[admin][l_name apprain/admin/account/editCWE-79 Improper Neutralization of Input During…
CVE-2025-41037data[filemanager][search apprain/admin/filemanagerCWE-79 Improper Neutralization of Input During…
CVE-2025-41038data[group][name apprain/admin/managegroup/addCWE-79 Improper Neutralization of Input During…
CVE-2025-41039data[sconfig][admin_landing_page data[sconfig][currency data[sconfig][db_version data[sconfig][default_paginationCWE-79 Improper Neutralization of Input During…
CVE-2025-41040apprain/developer/language/lipsum.xmlCWE-79 Improper Neutralization of Input During…
CVE-2025-41041apprain/developer/language/default.xmlCWE-79 Improper Neutralization of Input During…
CVE-2025-41042data[option][message data[option][subject data[option][templatetype apprain/information/manage/emailtemplate/addCWE-79 Improper Neutralization of Input During…
CVE-2025-41043data[appreportcode][id data[appreportcode][name apprain/appreport/manageCWE-79 Improper Neutralization of Input During…
CVE-2025-41044data[page][nameCWE-79 Improper Neutralization of Input During…
CVE-2025-41045data[sconfig][ethical_licensekey apprain/admin/config/ethicalCWE-79 Improper Neutralization of Input During…
CVE-2025-41046apprain/developer/addons/update/960gridCWE-79 Improper Neutralization of Input During…
CVE-2025-41047apprain/developer/addons/update/aceCWE-79 Improper Neutralization of Input During…
CVE-2025-41048apprain/developer/addons/update/adminCWE-79 Improper Neutralization of Input During…
CVE-2025-41049apprain/developer/addons/update/appformCWE-79 Improper Neutralization of Input During…
CVE-2025-41050apprain/developer/addons/update/base_libsCWE-79 Improper Neutralization of Input During…
CVE-2025-41051apprain/developer/addons/update/bootstrapCWE-79 Improper Neutralization of Input During…
CVE-2025-41052apprain/developer/addons/update/canvasjsCWE-79 Improper Neutralization of Input During…
CVE-2025-41053apprain/developer/addons/update/commonresourceCWE-79 Improper Neutralization of Input During…
CVE-2025-41054apprain/developer/addons/update/cycleCWE-79 Improper Neutralization of Input During…
CVE-2025-41055apprain/developer/addons/update/dialogsCWE-79 Improper Neutralization of Input During…
CVE-2025-41056apprain/developer/addons/update/hysontableCWE-79 Improper Neutralization of Input During…
CVE-2025-41057apprain/developer/addons/update/rich_text_editorCWE-79 Improper Neutralization of Input During…
CVE-2025-41058apprain/developer/addons/update/row_managerCWE-79 Improper Neutralization of Input During…
CVE-2025-41059apprain/developer/addons/update/tablesorterCWE-79 Improper Neutralization of Input During…
CVE-2025-41060apprain/developer/addons/update/treeCWE-79 Improper Neutralization of Input During…
CVE-2025-41061apprain/developer/addons/update/uploadifyCWE-79 Improper Neutralization of Input During…
26 records, read from the index as it stood on 2026-09-20. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.