Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Everest Backup HIGH 7.5
CVE-2023-52185

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Everestthemes Everest Backup – WordPress Cloud Backup, Migration, Restore…

Fix: 2.2.0+
Fix from $1,950 2023-12-31
Tencent Distributed Sql HIGH 7.5
CVE-2023-52286

Tencent tdsqlpcloud through 1.8.5 allows unauthenticated remote attackers to discover database credentials via an index.php/api/install/get_db_info r…

Fix: after 1.8.5
Fix from $1,950 2023-12-31
Aipower HIGH 7.5
CVE-2023-51527

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Senol Sahin AI Power: Complete AI Pack – Powered by GPT-4.This issue affe…

Fix: 1.8.3+
Fix from $1,950 2023-12-29
Product Catalog Simple HIGH 7.5
CVE-2023-51687

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in impleCode Product Catalog Simple.This issue affects Product Catalog Simpl…

Fix: 1.7.7+
Fix from $1,950 2023-12-29
Ecommerce Product Catalog HIGH 7.5
CVE-2023-51688

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in impleCode eCommerce Product Catalog Plugin for WordPress.This issue affec…

Fix: 3.3.27+
Fix from $1,950 2023-12-29
Google Authenticator HIGH 7.5
CVE-2022-44589

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in miniOrange miniOrange's Google Authenticator – WordPress Two Factor Authe…

Fix: 5.6.2+
Fix from $1,950 2023-12-29
Booked HIGH 7.5
CVE-2022-36399

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in BoxyStudio Booked - Appointment Booking for WordPress | Calendars.This is…

Fix: 2.4.4+
Fix from $1,950 2023-12-28
Wp Sms HIGH 7.5
CVE-2023-27447

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in VeronaLabs WP SMS – Messaging & SMS Notification for WordPress, WooCommer…

Fix: 6.0.4.1+
Fix from $1,950 2023-12-28
Ofbiz HIGH 7.5
CVE-2023-50968EPSS 63%

Arbitrary file properties reading vulnerability in Apache Software Foundation Apache OFBiz when user operates an uri call without authorizations. Th…

Fix: 18.12.11+
Fix from $1,950 2023-12-26
Application Security Gateway HIGH 7.5
CVE-2023-7094

A vulnerability classified as problematic was found in Netentsec NS-ASG Application Security Gateway 6.3. Affected by this vulnerability is an unknow…

No fix yet
Fix from $1,950 2023-12-25
Access Rights Manager MEDIUM 6.5
CVE-2023-40058

Sensitive data was added to our public-facing knowledgebase that, if exploited, could be used to access components of Access Rights Manager (ARM) if …

Fix: after 2023.2.1
Fix from $1,600 2023-12-21
Jobwp HIGH 7.5
CVE-2023-48288

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in HM Plugin WordPress Job Board and Recruitment Plugin – JobWP.This issue a…

Fix: 2.2+
Fix from $1,950 2023-12-21
Bigcommerce HIGH 7.5
CVE-2023-49162

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in BigCommerce BigCommerce For WordPress.This issue affects BigCommerce For …

Fix: after 5.0.6
Fix from $1,950 2023-12-21
Export All Posts\, Products\, Orders\, Refunds \& Users HIGH 7.5
CVE-2023-2487

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Smackcoders Export All Posts, Products, Orders, Refunds & Users.This issu…

Fix: after 2.4.1
Fix from $1,950 2023-12-21
Wp Email Capture HIGH 7.5
CVE-2023-28421

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Winwar Media WordPress Email Marketing Plugin – WP Email Capture.This iss…

Fix: 3.11+
Fix from $1,950 2023-12-21
Appmysite HIGH 7.5
CVE-2023-49762

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in AppMySite AppMySite – Create an app with the Best Mobile App Builder.This…

Fix: after 3.11.0
Fix from $1,950 2023-12-21
Popup Maker HIGH 7.5
CVE-2022-47597

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Popup Maker Popup Maker – Popup for opt-ins, lead gen, & more.This issue …

Fix: 1.18.0+
Fix from $1,950 2023-12-20
Uc 500e Firmware MEDIUM 5.3
CVE-2023-50705

An attacker could create malicious requests to obtain sensitive information about the web server.

No fix yet
Fix from $1,600 2023-12-20
macOS MEDIUM 5.7
CVE-2023-42940

A session rendering issue was addressed with improved session tracking. This issue is fixed in macOS Sonoma 14.2.1. A user who shares their screen ma…

Fix: 14.2.1+
Fix from $1,600 2023-12-19
Qradar Security Information And Event Manager MEDIUM 6.5
CVE-2023-47146

IBM Qradar SIEM 7.5 could allow a privileged user to obtain sensitive domain information due to data being misidentified. IBM X-Force ID: 270372.

Patch available
Fix from $1,600 2023-12-19
Aruba Hispeed Cache HIGH 7.5
CVE-2023-44983

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Aruba.It Aruba HiSpeed Cache.This issue affects Aruba HiSpeed Cache: from…

Fix: after 2.0.6
Fix from $1,950 2023-12-19
Media File Renamer Auto \& Manual Rename HIGH 7.5
CVE-2023-44991

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Jordy Meow Media File Renamer: Rename Files (Manual, Auto & AI).This issu…

Fix: after 5.6.9
Fix from $1,950 2023-12-19
Perfect Images HIGH 7.5
CVE-2023-44982

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Jordy Meow Perfect Images (Manage Image Sizes, Thumbnails, Replace, Retin…

Fix: after 6.4.5
Fix from $1,950 2023-12-19
System Management Homepage HIGH 7.5
CVE-2023-50271

A potential security vulnerability has been identified with HP-UX System Management Homepage (SMH). This vulnerability could be exploited locally or …

No fix yet
Fix from $1,950 2023-12-17
Intercom Broadcast System MEDIUM 6.5
CVE-2023-6894

A vulnerability was found in Hikvision Intercom Broadcasting System 3.0.3_20201113_RELEASE(HIK). It has been classified as problematic. This affects …

Fix: 4.1.0+
Fix from $1,600 2023-12-17
Xwiki HIGH 7.5
CVE-2023-50719EPSS 84%

XWiki Platform is a generic wiki platform. Starting in 7.2-milestone-2 and prior to versions 14.10.15, 15.5.2, and 15.7-rc-1, the Solr-based search i…

Fix: 14.10.5 / 15.5.2+
Fix from $1,950 2023-12-15
Xwiki MEDIUM 5.3
CVE-2023-50720EPSS 59%

XWiki Platform is a generic wiki platform. Prior to versions 14.10.15, 15.5.2, and 15.7-rc-1, the Solr-based search in XWiki discloses the email addr…

Fix: 14.10.5 / 15.5.2+
Fix from $1,600 2023-12-15
Iosmart Gen 1 Firmware MEDIUM 5.3
CVE-2023-0248

An attacker with physical access to the Kantech Gen1 ioSmart card reader with firmware version prior to 1.07.02 in certain circumstances can recover …

Fix: 1.07.02+
Fix from $1,600 2023-12-14
Solutions Enabler Virtual Appliance HIGH 7.5
CVE-2023-48671

Dell vApp Manager, versions prior to 9.2.4.x contain an information disclosure vulnerability. A remote attacker could potentially exploit this vulner…

Fix: 9.2.4.5 / 9.2.4.7+
Fix from $1,950 2023-12-14
Audiobookshelf MEDIUM 6.5
CVE-2023-47619

Audiobookshelf is a self-hosted audiobook and podcast server. In versions 2.4.3 and prior, users with the update permission are able to read arbitrar…

Fix: after 2.4.3
Fix from $1,600 2023-12-13