CVEs we hold for Mobile
Records whose assigning authority named Mobile as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-35394Mobile Next has Arbitrary Android Intent Execution via mobile_open_urlmobile-next mobile-mcp
CVE-2026-33989@mobilenext/mobile-mcp alllows arbitrary file write via Path Traversal in mobile screen capture toolsmobile-next mobile-mcp
CVE-2026-16569ShopApper <= 0.4.62 - Subscriber+ Arbitrary Product Stock UpdateUnknown Mobile App for WooCommerce: ShopApper Mobile App…
CVE-2026-16568ShopApper <= 0.4.62 - Subscriber+ Customer Data Disclosure via IDORUnknown Mobile App for WooCommerce: ShopApper Mobile App…
CVE-2025-9229Information Disclosure in MiR robots and MiR fleet through verbose error pagesMobile Industrial Robots MiR Fleet
CVE-2025-9225Cross-site scripting (XSS) in MiR robots and MiR fleetMobile Industrial Robots MiR Fleet
CVE-2025-8749Path traversal vulnerability in MiR robot software via API requestsMobile Industrial Robots MiR Robots
CVE-2025-8748OS command injection in MiR robots and MiR fleet via crafted HTTP requestsMobile Industrial Robots MiR Fleet
CVE-2025-68860WordPress Mobile builder plugin <= 1.4.2 - Broken Authentication vulnerabilityMobile builder
CVE-2025-5100KL-001-2025-005: Mobile Dynamix PrinterShare Mobile Print Double-Free Memory WriteMobile Print
CVE-2025-5099KL-001-2025-004: Mobile Dynamix PrinterShare Mobile Print Out-of-bounds WriteMobile Print
CVE-2025-5098KL-001-2025-003: Mobile Dynamix PrinterShare Mobile Print Gmail Oauth Token DisclosureMobile Print
CVE-2023-32581WordPress WP-Chatbot for Messenger plugin <= 4.7 - Broken Access ControlMobileMonkey WP-Chatbot for Messenger
CVE-2021-25049Mobile Events Manager < 1.4.4 - Admin+ Stored Cross-Site ScriptingUnknown Mobile Events Manager
CVE-2020-10279RVD#2569: Insecure operating system defaults in MiR robotsMobile Industrial Robots A/S MiR100
CVE-2020-10278RVD#2561: Unprotected BIOS allows user to boot from live OS image.Mobile Industrial Robots A/S MiR100
CVE-2020-10277RVD#2562: Booting from a live image leads to exfiltration of sensible information and privilege escalationMobile Industrial Robots A/S MiR100
CVE-2020-10276RVD#2558: Default credentials on SICK PLC allows disabling safety featuresMobile Industrial Robots A/S MiR100
CVE-2020-10274RVD#2556: MiR REST API allows for data exfiltration by unauthorized attackers (e.g. indoor maps)Mobile Industrial Robots A/S MiR100
CVE-2020-10273RVD#2560: Unprotected intellectual property in Mobile Industrial Robots (MiR) controllersMobile Industrial Robots A/S MiR100
CVE-2020-10272RVD#2554: MiR ROS computational graph presents no authentication mechanismsMobile Industrial Robots A/S MiR100
CVE-2020-10271RVD#2555: MiR ROS computational graph is exposed to all network interfaces, including poorly secured wireless networks…Mobile Industrial Robots A/S MiR100
CVE-2020-10270RVD#2557: Hardcoded Credentials on MiRX00 Control DashboardMobile Industrial Robots A/S MiR100
CVE-2020-10269RVD#2566: Hardcoded Credentials on MiRX00 wireless Access PointMobile Industrial Robots A/S MiR100
CVE-2018-25080MobileDetect Example session_example.php initLayoutType cross site scriptingn/a MobileDetect
CVE-2017-20182Mobile Vikings Django AJAX Utilities Backslash pagination.js Pagination cross site scriptingMobile Vikings Django AJAX Utilities
32 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.