CVE Tools

Wegia

173 CVEs tracked since 2024. Since Dec 2024, none of them reached CISA KEV.

Wegia CVEs per month

Dec 2024 to Apr 2026. Point at a month, or focus the strip and use the arrow keys.
Wegia CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2024-1240
2025-01370
2025-02220
2025-03130
2025-04null or fewer
2025-05null or fewer
2025-0690
2025-07310
2025-08110
2025-0950
2025-10140
2025-11null or fewer
2025-12null or fewer
2026-01100
2026-02null or fewer
2026-0380
2026-0490

Products

The products that kept showing up in Wegia's monthly top three, with their CVEs summed over those months.

  1. Wegia17312 months

Latest CVEs

The 15 most recently published vulnerabilities affecting Wegia.

  1. CVE-2026-40283WeGIA has stored XSS in profile_paciente.php6.8
  2. CVE-2026-35475WeGIA - Open Redirect - backup redirection — Unvalidated $_GET['redirect']6.1
  3. CVE-2026-35474WeGIA - Open Redirect - atualizacao redirection - Unvalidated $_GET['redirect']6.1
  4. CVE-2026-35473WeGIA - Open Redirect - IentradaControle - listarId() - Unvalidated $_GET['nextPage']6.1
  5. CVE-2026-35399WeGIA has Stored XSS in backup file names6.1
  6. CVE-2026-35472WeGIA - Open Redirect - EstoqueControle - listarTodos() - Unvalidated $_GET['nextPage']6.1
  7. CVE-2026-35398WeGIA - Open Redirect - OrigemControle - listarTodos() & listarId_Nome() - Unvalidated $_GET['nextPage']6.1
  8. CVE-2026-35396WeGIA - Open Redirect - IsaidaControle - listarId() - Unvalidated $_GET['nextPage']6.1
  9. CVE-2026-35395WeGIA has a SQL Injection in DespachoDAO.php via id_memorando parameter8.8
  10. CVE-2026-33991WeGIA has SQL Injection in deletar_tag.php8.8
  11. CVE-2026-33136WeGIA has Reflected Cross-Site Scripting (XSS) in `listar_memorandos_ativos.php` via `sccd` parameter9.3
  12. CVE-2026-33135WeGIA has Reflected Cross-Site Scripting (XSS) in `novo_memorandoo.php` via `sccs` parameter9.3
  13. CVE-2026-33134WeGIA has Authenticated Time-Based Blind SQL Injection in `restaurar_produto.php` via `id_produto` parameter9.3
  14. CVE-2026-33133WeGIA has an arbitrary SQL execution vulnerability via crafted backup archive7.2
  15. CVE-2026-31896WeGIA has a Time-Based Blind SQL Injection in remover_produto_ocultar.php9.8

The record

Peak rank
#25 in Jan 2025
Busiest month shown
Jan 2025, 37 CVEs
Months with a KEV entry
0 since Dec 2024
Monthly snapshots
12 since 2024
Wegia's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store