Webtechnologies Vulnerabilities

Comprehensive security vulnerability database for Webtechnologies products

Last updated: Mar 6, 2026
Total CVEs

4

Critical

0

With Exploits

1

Last 30 Days

0

Severity Distribution

Critical0
0%
High2
50%
Medium2
50%
Low0
0%
DescriptionVendor / ProductExploit Status
CVE-2026-290658.8

This vulnerability allows an attacker to overwrite files on the server by uploading a specially crafted ZIP file, which can lead to unauthorized changes or access to sensitive data. It affects versions prior to 0.54.4 of the changedetection tool, so users should upgrade to the latest version to protect against this risk.

webtechnologieschangedetection
Theoretical
about 1 month agoMar 6, 2026
CVE-2026-290398.8

This vulnerability allows an attacker to read any file on the server where the changedetection.io application is running by using specially crafted XPath expressions. It can be exploited by anyone who can access the application and does not require any special permissions, making it a significant risk if not updated to the latest version.

webtechnologieschangedetection
Theoretical
about 1 month agoMar 6, 2026
CVE-2026-290386.1

An attacker can exploit a vulnerability in changedetection.io to inject malicious JavaScript into the web page, which could then be executed in the browser of anyone visiting that page. This happens when a user accesses a specific URL with a manipulated tag identifier, allowing the attacker to run harmful scripts without needing any special access.

webtechnologieschangedetection
Theoretical
about 1 month agoMar 6, 2026
CVE-2023-247695.4

This vulnerability allows attackers to run harmful scripts on a user's browser by tricking them into clicking a specially crafted link when adding a new change detection watch. It requires the attacker to manipulate the URL, making it possible for them to target users of the affected software version before an update is applied.

webtechnologieschangedetection
Exploit Available
about 3 years agoFeb 17, 2023

About Webtechnologies Security

This page tracks all publicly disclosed security vulnerabilities (CVEs) affecting Webtechnologies products. Our database is updated in real-time from the National Vulnerability Database (NVD) and enriched with exploit information from GitHub and other security research sources.

Each CVE listing includes CVSS severity scores, exploit availability status, AI-powered vulnerability summaries, and links to official patches and security advisories.