Vulnerability index

Browse CVEs

7,744 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Unclassified HIGH 7.4
CVE-2024-50338

Git Credential Manager (GCM) is a secure Git credential helper built on .NET that runs on Windows, macOS, and Linux. The Git credential protocol is t…

Mitigation only
Fix from $1,950 2025-01-14
Windows 10 1507 MEDIUM 6.5
CVE-2025-21308

Windows Themes Spoofing Vulnerability

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,600 2025-01-14
Windows 10 1507 MEDIUM 5.9
CVE-2025-21242

Windows Kerberos Information Disclosure Vulnerability

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,600 2025-01-14
W3 Total Cache HIGH 7.5
CVE-2024-12008

The W3 Total Cache plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.8.1 through the publicly expose…

Fix: 2.8.2+
Fix from $1,950 2025-01-14
Unclassified MEDIUM 5.1
CVE-2025-22138

@codidact/qpixel is a Q&A-based community knowledge-sharing software. In affected versions when a category is set to private or limited-visibility wi…

Mitigation only
Fix from $1,600 2025-01-13
Reggie MEDIUM 5.3
CVE-2025-0403

A vulnerability, which was classified as problematic, has been found in 1902756969 reggie 1.0. Affected by this issue is some unknown functionality o…

No fix yet
Fix from $1,600 2025-01-13
Junos MEDIUM 5.5
CVE-2025-21592

An Exposure of Sensitive Information to an Unauthorized Actor vulnerability in the command-line interface (CLI) of Juniper Networks Junos OS on SRX S…

Fix: 21.4+
Fix from $1,600 2025-01-09
Unclassified HIGH 8.2
CVE-2023-24010

An attacker can arbitrarily craft malicious DDS Participants (or ROS 2 Nodes) with valid certificates to compromise and get full control of the attac…

Mitigation only
Fix from $1,950 2025-01-09
Unclassified HIGH 8.2
CVE-2023-24011

An attacker can arbitrarily craft malicious DDS Participants (or ROS 2 Nodes) with valid certificates to compromise and get full control of the attac…

Mitigation only
Fix from $1,950 2025-01-09
Unclassified HIGH 8.2
CVE-2023-24012

An attacker can arbitrarily craft malicious DDS Participants (or ROS 2 Nodes) with valid certificates to compromise and get full control of the attac…

Mitigation only
Fix from $1,950 2025-01-09
Xpro Addons For Elementor MEDIUM 6.5
CVE-2024-12584

The 140+ Widgets | Xpro Addons For Elementor – FREE plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and i…

Fix: 1.4.6.3+
Fix from $1,600 2025-01-08
Harmonyos HIGH 7.5
CVE-2024-56443

Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confident…

No fix yet
Fix from $1,950 2025-01-08
Debian Linux MEDIUM 6.5
CVE-2024-12426

Exposure of Environmental Variables and arbitrary INI file values to an Unauthorized Actor vulnerability in The Document Foundation LibreOffice. …

Fix: 24.8.4+
Fix from $1,600 2025-01-07
Passster HIGH 7.5
CVE-2024-11282

The Passster – Password Protect Pages and Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and inc…

Fix: 4.2.11+
Fix from $1,950 2025-01-07
Unclassified MEDIUM 5.3
CVE-2024-12159

The Optimize Your Campaigns – Google Shopping – Google Ads – Google Adwords plugin for WordPress is vulnerable to Information Exposure in all version…

Mitigation only
Fix from $1,600 2025-01-07
Unclassified MEDIUM 5.3
CVE-2024-11290

The Member Access plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.1.6 via the WordPress …

Mitigation only
Fix from $1,600 2025-01-07
Unclassified HIGH 7.5
CVE-2025-21620

Deno is a JavaScript, TypeScript, and WebAssembly runtime with secure defaults. When you send a request with the Authorization header to one domain, …

Mitigation only
Fix from $1,950 2025-01-06
Unclassified MEDIUM 5.5
CVE-2025-21615

AAT (Another Activity Tracker) is a GPS-tracking application for tracking sportive activities, with emphasis on cycling. Versions lower than v1.26 of…

Mitigation only
Fix from $1,600 2025-01-06
Unclassified MEDIUM 5.3
CVE-2025-0224

A vulnerability was found in Provision-ISR SH-4050A-2, SH-4100A-2L(MM), SH-8100A-2L(MM), SH-16200A-2(1U), SH-16200A-5(1U) and NVR5-8200PX up to 20241…

Mitigation only
Fix from $1,600 2025-01-05
Yunfan Learning Examination System HIGH 7.5
CVE-2024-13110

A vulnerability classified as problematic has been found in Beijing Yunfan Internet Technology Yunfan Learning Examination System 1.9.2. Affected is …

No fix yet
Fix from $1,950 2025-01-02
Unclassified HIGH 7.5
CVE-2024-47922

Priority – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

No fix yet
Fix from $1,950 2024-12-30
Unclassified MEDIUM 5.3
CVE-2024-47923

Mashov – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

No fix yet
Fix from $1,600 2024-12-30
Unclassified HIGH 8.6
CVE-2024-56509

changedetection.io is a free open source web page change detection, website watcher, restock monitor and notification service. Improper input validat…

Patch available
Fix from $1,950 2024-12-27
Unclassified MEDIUM 5.3
CVE-2024-12984

A vulnerability classified as problematic has been found in Amcrest IP2M-841B, IP2M-841W, IPC-IP2M-841B, IPC-IP3M-943B, IPC-IP3M-943S, IPC-IP3M-HX2B …

Mitigation only
Fix from $1,600 2024-12-27
Unclassified MEDIUM 5.3
CVE-2024-12896

A vulnerability was found in Intelbras VIP S3020 G2, VIP S4020 G2, VIP S4020 G3 and VIP S4320 G2 up to 20241222 and classified as problematic. Affect…

Mitigation only
Fix from $1,600 2024-12-22
Unclassified MEDIUM 5.3
CVE-2023-31280

An AirVantage online Warranty Checker tool vulnerability could allow an attacker to perform bulk enumeration of IMEI and Serial Numbers pairs. The A…

Mitigation only
Fix from $1,600 2024-12-21
Page Restriction HIGH 7.5
CVE-2024-11297

The Page Restriction WordPress (WP) – Protect WP Pages/Post plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up t…

Fix: 1.3.7+
Fix from $1,950 2024-12-20
Discourse MEDIUM 5.9
CVE-2024-53991EPSS 27%

Discourse is an open source platform for community discussion. This vulnerability only impacts Discourse instances configured to use `FileStore::Loca…

Fix: 3.3.2 / 3.4.0+
Fix from $1,600 2024-12-19
Button Block MEDIUM 6.5
CVE-2024-12560

The Button Block – Get fully customizable & multi-functional buttons plugin for WordPress is vulnerable to Sensitive Information Exposure in all vers…

Fix: 1.1.6+
Fix from $1,600 2024-12-19
Wp Project Manager MEDIUM 6.5
CVE-2024-10548

The WP Project Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.6.15 via the Proj…

Fix: 2.6.16+
Fix from $1,600 2024-12-19