VulnSea

uniong has 4 CVEs on record. The busiest recent month was November 2025 with 4. The median CVSS is 6.5 (medium).

CVEs per month

Last 12 months, by publish date

111201020304050607080910
Exploited share
0% vs 1% corpus
Median CVSS
6.5
Publish → KEV
—
Last 90 days
0 prev 0

Products

  • webitr 4
4
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

uniong vulnerabilities

CVEs affecting uniong, newest first. Open any entry for full detail, references, and exploit status.

4 CVEsRSS

CVE-2025-13771Medium· 6.5
10mo ago

WebITR developed by Uniong has an Arbitrary File Read vulnerability, allowing authenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.

WebITR developed by Uniong has an Arbitrary File Read vulnerability, allowing authenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.

▾ Sunlituniong · webitrEPSS 0.45%via NVD
CVE-2025-13770Medium· 6.5
10mo ago

WebITR developed by Uniong has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL commands to read database contents.

WebITR developed by Uniong has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL commands to read database contents.

▾ Sunlituniong · webitrEPSS 0.32%via NVD
CVE-2025-13769Medium· 6.5
10mo ago

WebITR developed by Uniong has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL commands to read database contents.

WebITR developed by Uniong has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL commands to read database contents.

▾ Sunlituniong · webitrEPSS 0.32%via NVD
CVE-2025-13768High· 7.5
10mo ago

WebITR developed by Uniong has an Authentication Bypass vulnerability, allowing authenticated remote attackers to log into the system as any user by modifying a specific parameter

WebITR developed by Uniong has an Authentication Bypass vulnerability, allowing authenticated remote attackers to log into the system as any user by modifying a specific parameter. Attackers must first obtain a user ID to exploit this vu…

▾ Twilightuniong · webitrEPSS 0.40%via NVD
uniong vulnerabilities (CVEs) · VulnSea