Total vulnerabilities in the database
/usr/local/www/pkg.php in pfSense CE before 2.6.0 and pfSense Plus before 22.01 uses $_REQUEST['pkg_filter'] in a PHP echo call, causing XSS.
CVSS v3:
CVSS v2:
CWEs:
OWASP TOP 10: