Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Icecms MEDIUM 6.5
CVE-2023-6757

A vulnerability was found in Thecosy IceCMS 2.0.1. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of…

No fix yet
Fix from $1,600 2023-12-13
Couchdb MEDIUM 5.7
CVE-2023-45725

Design document functions which receive a user http request object may expose authorization or session cookie headers of the user who accesses the do…

Fix: after 3.3.2
Fix from $1,600 2023-12-13
Nautobot MEDIUM 5.3
CVE-2023-50263

Nautobot is a Network Source of Truth and Network Automation Platform built as a web application atop the Django Python framework with a PostgreSQL o…

Fix: 1.6.7 / 2.0.6+
Fix from $1,600 2023-12-12
Laf CRITICAL 9.1
CVE-2023-48225

Laf is a cloud development platform. Prior to version 1.0.0-beta.13, the control of LAF app enV is not strict enough, and in certain scenarios of pri…

No fix yet
Fix from $2,300 2023-12-12
Umbraco Cms MEDIUM 5.3
CVE-2023-49278

Umbraco is an ASP.NET content management system (CMS). Starting in version 8.0.0 and prior to versions 8.18.10, 10.8.1, and 12.3.4, a brute force exp…

Fix: 8.18.10 / 10.8.1+
Fix from $1,600 2023-12-12
Umbraco Cms MEDIUM 5.3
CVE-2023-49274

Umbraco is an ASP.NET content management system (CMS). Starting in version 8.0.0 and prior to versions 8.18.10, 10.8.1, and 12.3.4, a user enumeratio…

Fix: 8.18.10 / 10.8.1+
Fix from $1,600 2023-12-12
365 Apps MEDIUM 6.5
CVE-2023-35636EPSS 18%

Microsoft Outlook Information Disclosure Vulnerability

Patch available
Fix from $1,600 2023-12-12
Mattermost Server MEDIUM 5.3
CVE-2023-46701

Mattermost fails to perform authorization checks in the /plugins/playbooks/api/v0/runs/add-to-timeline-dialog endpoint of the Playbooks plugin allow…

Fix: after 9.2.1
Fix from $1,600 2023-12-12
Ipados MEDIUM 5.5
CVE-2023-42884

This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sonoma 14.2, iOS 17.2 and iPadOS 17.2, macOS …

Fix: 13.6.3 / 14.2+
Fix from $1,600 2023-12-12
Typecho MEDIUM 5.3
CVE-2023-6615

A vulnerability, which was classified as problematic, has been found in Typecho 1.2.1. Affected by this issue is some unknown functionality of the fi…

No fix yet
Fix from $1,600 2023-12-08
Build Of Quarkus MEDIUM 5.3
CVE-2023-6393

A flaw was found in the Quarkus Cache Runtime. When request processing utilizes a Uni cached using @CacheResult and the cached Uni reuses the initial…

Mitigation only
Fix from $1,600 2023-12-06
Mattermost Server MEDIUM 5.3
CVE-2023-6459

Mattermost is grouping calls in the /metrics endpoint by id and reports that id in the response. Since this id is the channelID, the public /metrics …

Fix: 7.8.14 / 8.1.5+
Fix from $1,600 2023-12-06
Graph MEDIUM 5.3
CVE-2023-49282

msgraph-sdk-php is the Microsoft Graph Library for PHP. The Microsoft Graph PHP SDK published packages which contained test code that enabled the use…

Fix: 1.109.1 / 2.0.1+
Fix from $1,600 2023-12-05
Graph MEDIUM 5.3
CVE-2023-49283

microsoft-graph-core the Microsoft Graph Library for PHP. The Microsoft Graph Beta PHP SDK published packages which contained test code that enabled …

Fix: 2.0.2+
Fix from $1,600 2023-12-05
Premium Addons MEDIUM 6.5
CVE-2023-37868

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Leap13 Premium Addons PRO.This issue affects Premium Addons PRO: from n/a…

Fix: after 2.9.0
Fix from $1,600 2023-11-30
Zippy MEDIUM 6.5
CVE-2023-26533

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gesundheit Bewegt GmbH Zippy.This issue affects Zippy: from n/a through 1…

Fix: after 1.6.1
Fix from $1,600 2023-11-30
Bookingpress MEDIUM 5.3
CVE-2023-36507

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Repute Infosystems BookingPress – Appointment Booking Calendar Plugin and…

Fix: after 1.0.64
Fix from $1,600 2023-11-30
Email Download Link MEDIUM 5.3
CVE-2023-36523

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gopi Ramasamy Email download link.This issue affects Email download link:…

Fix: after 3.7
Fix from $1,600 2023-11-30
Libsyn Publisher Hub MEDIUM 5.3
CVE-2023-25057

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Libsyn Libsyn Publisher Hub.This issue affects Libsyn Publisher Hub: from…

Fix: after 1.3.2
Fix from $1,600 2023-11-30
Image Regenerate \& Select Crop MEDIUM 5.3
CVE-2023-46820

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Iulia Cazan Image Regenerate & Select Crop.This issue affects Image Regen…

Fix: after 7.3.0
Fix from $1,600 2023-11-30
Booster For Woocommerce MEDIUM 6.5
CVE-2023-48333

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pluggabl LLC Booster for WooCommerce.This issue affects Booster for WooCo…

Fix: after 7.1.1
Fix from $1,600 2023-11-30
Cookies And Content Security Policy HIGH 7.5
CVE-2023-40662

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Jonk @ Follow me Darling Cookies and Content Security Policy.This issue a…

Fix: 2.16+
Fix from $1,950 2023-11-30
Email Posts To Subscribers HIGH 7.5
CVE-2023-41735

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gopi Ramasamy Email posts to subscribers.This issue affects Email posts t…

Fix: after 6.2
Fix from $1,950 2023-11-30
Profilepress HIGH 7.5
CVE-2023-44150

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ProfilePress Membership Team Paid Membership Plugin, Ecommerce, Registrat…

Fix: 4.13.3+
Fix from $1,950 2023-11-30
Export All Posts\, Products\, Orders\, Refunds \& Users HIGH 7.5
CVE-2023-45066

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Smackcoders Export All Posts, Products, Orders, Refunds & Users.This issu…

Fix: after 2.4.1
Fix from $1,950 2023-11-30
Libsyn Publisher Hub MEDIUM 5.3
CVE-2023-45834

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Libsyn Libsyn Publisher Hub.This issue affects Libsyn Publisher Hub: from…

Fix: after 1.4.4
Fix from $1,600 2023-11-30
Product Stock Manager \& Notifier For Woocommerce HIGH 7.5
CVE-2023-37972

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in MultiVendorX Product Stock Manager & Notifier for WooCommerce.This issue …

Fix: 2.0.2+
Fix from $1,950 2023-11-30
Post Grid Combo HIGH 7.5
CVE-2023-40211

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in PickPlugins Post Grid Combo – 36+ Gutenberg Blocks.This issue affects Pos…

Fix: 2.2.51+
Fix from $1,950 2023-11-30
Image Optimizer HIGH 7.5
CVE-2023-40600

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Exactly WWW EWWW Image Optimizer. It works only when debug.log is turned …

Fix: 7.2.1+
Fix from $1,950 2023-11-30
Debug Log Manager HIGH 7.5
CVE-2023-6136

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Bowo Debug Log Manager.This issue affects Debug Log Manager: from n/a thr…

Fix: 2.3.1+
Fix from $1,950 2023-11-30