Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Multi Tenant Loadmaster MEDIUM 6.8
CVE-2024-56134

Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue affects:  Product …

Fix: 7.1.35.13 / 7.2.54.13+
Fix from $1,600 2025-02-05
Multi Tenant Loadmaster MEDIUM 6.8
CVE-2024-56135

Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue affects:  Product …

Fix: 7.1.35.13 / 7.2.54.13+
Fix from $1,600 2025-02-05
Multi Tenant Loadmaster MEDIUM 6.8
CVE-2024-56131EPSS 6%

Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue affects:  Product …

Fix: 7.1.35.13 / 7.2.54.13+
Fix from $1,600 2025-02-05
Multi Tenant Loadmaster MEDIUM 6.8
CVE-2024-56132EPSS 6%

Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue affects:  Product …

Fix: 7.1.35.13 / 7.2.54.13+
Fix from $1,600 2025-02-05
Multi Tenant Loadmaster MEDIUM 6.8
CVE-2024-56133

Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue affects:  Product …

Fix: 7.1.35.13 / 7.2.54.13+
Fix from $1,600 2025-02-05
Asyncos MEDIUM 5.3
CVE-2025-20183

A vulnerability in a policy-based Cisco Application Visibility and Control (AVC) implementation of Cisco AsyncOS Software for Cisco Secure Web Applia…

Mitigation only
Fix from $1,600 2025-02-05
Asyncos HIGH 7.2
CVE-2025-20184

A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gateway and Cisco Secure Web Appliance could a…

Mitigation only
Fix from $1,950 2025-02-05
Unclassified HIGH 8.2
CVE-2025-1022

Versions of the package spatie/browsershot before 5.0.5 are vulnerable to Improper Input Validation in the setHtml function, invoked by Browsershot::…

Patch available
Fix from $1,950 2025-02-05
Unclassified HIGH 8.6
CVE-2025-1026

Versions of the package spatie/browsershot before 5.0.5 are vulnerable to Improper Input Validation due to improper URL validation through the setUrl…

Patch available
Fix from $1,950 2025-02-05
Aqt1000 Firmware HIGH 7.8
CVE-2024-38420

Memory corruption while configuring a Hypervisor based input virtual device.

Mitigation only
Fix from $1,950 2025-02-03
Fastconnect 7800 Firmware HIGH 7.8
CVE-2024-38413

Memory corruption while processing frame packets.

Patch available
Fix from $1,950 2025-02-03
Unclassified MEDIUM 5.0
CVE-2025-0974

A vulnerability was determined in MaxD Lightning Module 4.43/4.44 on OpenCart. This issue affects some unknown processing. Executing a manipulation o…

Mitigation only
Fix from $1,600 2025-02-03
Unclassified MEDIUM 6.3
CVE-2025-0938

The Python standard library functions `urllib.parse.urlsplit` and `urlparse` accepted domain names that included square brackets which isn't valid ac…

Patch available
Fix from $1,600 2025-01-31
Unclassified CRITICAL 9.8
CVE-2024-47857

SSH Communication Security PrivX versions between 18.0-36.0 implement insufficient validation on public key signatures when using native SSH connecti…

Mitigation only
Fix from $2,300 2025-01-31
Unclassified MEDIUM 5.3
CVE-2025-24504

An improper input validation the CSRF filter results in unsanitized user input written to the application logs.

Mitigation only
Fix from $1,600 2025-01-30
Unclassified MEDIUM 5.3
CVE-2025-24501

An improper input validation allows an unauthenticated attacker to alter PAM logs by sending a specially crafted HTTP request.

Mitigation only
Fix from $1,600 2025-01-30
Unclassified HIGH 7.3
CVE-2025-0841

A vulnerability has been found in Aridius XYZ up to 20240927 on OpenCart and classified as critical. This vulnerability affects the function loadMore…

Mitigation only
Fix from $1,950 2025-01-29
Unclassified MEDIUM 5.2
CVE-2025-24882

regclient is a Docker and OCI Registry Client in Go. A malicious registry could return a different digest for a pinned manifest without detection. Th…

Patch available
Fix from $1,600 2025-01-29
Ruoyi HIGH 7.2
CVE-2025-0734

A vulnerability has been found in y_project RuoYi up to 4.8.0 and classified as critical. This vulnerability affects the function getBeanName of the …

Fix: after 4.8.0
Fix from $1,950 2025-01-27
Unclassified MEDIUM 5.4
CVE-2024-43445

A vulnerability exists in OTRS and ((OTRS Community Edition)) that fail to set the HTTP response header X-Content-Type-Options to nosniff. An attacke…

Mitigation only
Fix from $1,600 2025-01-27
Unclassified MEDIUM 5.9
CVE-2024-10846

The compose-go library component in versions v2.10-v2.4.0 allows an authorized user who sends malicious YAML payloads to cause the compose-go to cons…

Mitigation only
Fix from $1,600 2025-01-23
Unclassified HIGH 8.6
CVE-2023-50733

A Server-Side Request Forgery (SSRF) vulnerability has been identified in the Web Services feature of newer Lexmark devices.

Mitigation only
Fix from $1,950 2025-01-21
Unclassified CRITICAL 10.0
CVE-2025-23202

Bible Module is a tool designed for ROBLOX developers to integrate Bible functionality into their games. The `FetchVerse` and `FetchPassage` function…

Patch available
Fix from $2,300 2025-01-17
Umbraco Forms MEDIUM 5.3
CVE-2025-23041

Umbraco.Forms is a web form framework written for the nuget ecosystem. Character limits configured by editors for short and long answer fields are va…

Fix: 8.13.15 / 10.5.7+
Fix from $1,600 2025-01-14
Windows 11 22h2 HIGH 8.8
CVE-2025-21370

Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability

Fix: 10.0.22621.4751 / 10.0.22631.4751+
Fix from $1,950 2025-01-14
Sharepoint Server HIGH 7.8
CVE-2025-21344

Microsoft SharePoint Server Remote Code Execution Vulnerability

Fix: 16.0.17928.20356+
Fix from $1,950 2025-01-14
Windows 10 1507 MEDIUM 5.5
CVE-2025-21284

Windows Virtual Trusted Platform Module Denial of Service Vulnerability

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,600 2025-01-14
Windows 10 1507 MEDIUM 5.5
CVE-2025-21280

Windows Virtual Trusted Platform Module Denial of Service Vulnerability

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,600 2025-01-14
Windows 10 21h2 HIGH 7.8
CVE-2025-21234

Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability

Fix: 10.0.19044.5371 / 10.0.19045.5371+
Fix from $1,950 2025-01-14
Windows 10 21h2 HIGH 7.8
CVE-2025-21235

Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability

Fix: 10.0.19044.5371 / 10.0.19045.5371+
Fix from $1,950 2025-01-14