Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Remote Desktop Manager MEDIUM 6.5
CVE-2023-1203

Improper removal of sensitive data in the entry edit feature of Hub Business submodule in Devolutions Remote Desktop Manager PowerShell Module 2022.3…

Fix: 2022.3.1.6+
Fix from $1,600 2023-03-10
Apq8009 Firmware MEDIUM 5.5
CVE-2022-22075

Information Disclosure in Graphics during GPU context switch.

Patch available
Fix from $1,600 2023-03-10
Ad Blocking Detector HIGH 7.5
CVE-2014-125093

A vulnerability has been found in Ad Blocking Detector Plugin up to 1.2.1 on WordPress and classified as problematic. This vulnerability affects unkn…

Fix: 1.2.2+
Fix from $1,950 2023-03-10
Px4 Drone Autopilot HIGH 7.5
CVE-2021-34125

An issue discovered in Yuneec Mantis Q and PX4-Autopilot v 1.11.3 and below allow attacker to gain access to sensitive information via various nuttx …

Fix: after 1.11.3
Fix from $1,950 2023-03-09
Bitwarden HIGH 7.5
CVE-2018-25081

Bitwarden through 2023.2.1 offers password auto-fill within a cross-domain IFRAME element. NOTE: the vendor's position is that there have been import…

Fix: after 2023.2.1
Fix from $1,950 2023-03-09
Coming Soon \& Maintenance MEDIUM 5.3
CVE-2023-1263

The CMP – Coming Soon & Maintenance plugin for WordPress is vulnerable to Information Exposure in versions up to, and including, 4.1.6 via the cmp_g…

Fix: after 4.1.6
Fix from $1,600 2023-03-07
Libmemcached MEDIUM 6.5
CVE-2023-27478

libmemcached-awesome is an open source C/C++ client library and tools for the memcached server. `libmemcached` could return data for a previously req…

Fix: 1.1.4+
Fix from $1,600 2023-03-07
Fortiproxy MEDIUM 5.3
CVE-2022-41329

An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in Fortinet FortiProxy version 7.2.0 through 7.2.1 and 7.0.0 th…

Fix: after 7.2.3
Fix from $1,600 2023-03-07
Fortianalyzer MEDIUM 6.5
CVE-2022-27490

A exposure of sensitive information to an unauthorized actor in Fortinet FortiManager version 6.0.0 through 6.0.4, FortiAnalyzer version 6.0.0 throug…

Fix: after 7.0.4
Fix from $1,600 2023-03-07
Buildkit MEDIUM 6.5
CVE-2023-26054

BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. In affected versions when the …

Fix: 0.11.4+
Fix from $1,600 2023-03-06
Discourse Yearly Review MEDIUM 5.3
CVE-2023-25169

discourse-yearly-review is a discourse plugin which publishes an automated Year in Review topic. In affected versions a user present in a yearly revi…

Fix: 0.2+
Fix from $1,600 2023-03-06
M Files Server HIGH 7.5
CVE-2022-3284

Download key for a file in a vault was passed in an insecure way that could easily be logged in M-Files New Web in M-Files before 22.11.12011.0. This…

Fix: 22.11.12011.0+
Fix from $1,950 2023-03-06
M Files Server HIGH 7.6
CVE-2022-4862

Rendering of HTML provided by another authenticated user is possible in browser on M-Files Web before 22.12.12140.3. This allows the content to steal…

Fix: 22.12.12140.3+
Fix from $1,950 2023-03-06
Nest MEDIUM 5.3
CVE-2023-26108

Versions of the package @nestjs/core before 9.0.5 are vulnerable to Information Exposure via the StreamableFile pipe. Exploiting this vulnerability i…

Fix: 9.0.5+
Fix from $1,600 2023-03-06
Discourse MEDIUM 5.3
CVE-2023-25819

Discourse is an open source platform for community discussion. Tags that are normally private are showing in metadata. This affects any site running …

Fix: 3.1.0+
Fix from $1,600 2023-03-04
Packaged Contact Center Enterprise MEDIUM 6.5
CVE-2023-20061

Multiple vulnerabilities in Cisco Unified Intelligence Center could allow an authenticated, remote attacker to collect sensitive information or perfo…

Fix: 12.6+
Fix from $1,600 2023-03-03
Xwiki HIGH 7.5
CVE-2023-26476

XWiki Platform is a generic wiki platform. Starting in version 3.2-m3, users can deduce the content of the password fields by repeated call to `LiveT…

Fix: 13.4.4 / 13.10.9+
Fix from $1,950 2023-03-02
Powerscale Onefs MEDIUM 6.7
CVE-2023-25536

Dell PowerScale OneFS 9.4.0.x contains exposure of sensitive information to an unauthorized actor. A malicious authenticated local user could potenti…

Fix: after 9.4.0.11
Fix from $1,600 2023-03-02
Emc Networker MEDIUM 6.5
CVE-2023-24567

Dell NetWorker versions 19.5 and earlier contain 'RabbitMQ' version disclosure vulnerability. A NetWorker server user with remote access to NetWorker…

Fix: 19.6+
Fix from $1,600 2023-03-01
Emc Networker MEDIUM 6.5
CVE-2023-25544

Dell NetWorker versions 19.5 and earlier contain 'Apache Tomcat' version disclosure vulnerability. A NetWorker server user with remote access to NetW…

Fix: 19.6+
Fix from $1,600 2023-03-01
Directory Server MEDIUM 5.5
CVE-2023-1055

A flaw was found in RHDS 11 and RHDS 12. While browsing entries LDAP tries to decode the userPassword attribute instead of the userCertificate attrib…

Mitigation only
Fix from $1,600 2023-02-27
Ipados MEDIUM 5.5
CVE-2023-23511

The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, iOS 16.3 and iPadOS 16.3, tv…

Fix: 9.3 / 12.6.3+
Fix from $1,600 2023-02-27
Ipados MEDIUM 5.5
CVE-2023-23499

This issue was addressed by enabling hardened runtime. This issue is fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, watchOS 9.3, macOS Big Sur 1…

Fix: 9.3 / 11.7.3+
Fix from $1,600 2023-02-27
Ipados MEDIUM 5.5
CVE-2023-23500

The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.2, iOS 16.3 and iPadOS 16.3, iOS 15.7.3 and iPadOS 15.…

Fix: 9.3 / 13.2+
Fix from $1,600 2023-02-27
macOS MEDIUM 5.5
CVE-2022-32896

This issue was addressed by enabling hardened runtime. This issue is fixed in macOS Monterey 12.6, macOS Big Sur 11.7. A user may be able to view sen…

Fix: 11.7 / 12.6+
Fix from $1,600 2023-02-27
macOS MEDIUM 5.3
CVE-2020-9846

A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.0.1. A malicious application may be able to acce…

Fix: 12.0.1+
Fix from $1,600 2023-02-27
Music MEDIUM 5.9
CVE-2021-46841

This issue was addressed by using HTTPS when sending information over the network. This issue is fixed in Apple Music 3.5.0 for Android. An attacker …

Mitigation only
Fix from $1,600 2023-02-27
Ipados MEDIUM 5.5
CVE-2022-22668

A logic issue was addressed with improved restrictions. This issue is fixed in iOS 15.4 and iPadOS 15.4, macOS Monterey 12.3. A malicious application…

Fix: 12.3 / 15.4+
Fix from $1,600 2023-02-27
Safari MEDIUM 6.5
CVE-2022-32784

The issue was addressed with improved UI handling. This issue is fixed in Safari 15.6, iOS 15.6 and iPadOS 15.6. Visiting a maliciously crafted websi…

Fix: 15.5 / 15.6+
Fix from $1,600 2023-02-27
Ipados MEDIUM 5.5
CVE-2022-32824

The issue was addressed with improved memory handling. This issue is fixed in tvOS 15.6, watchOS 8.7, iOS 15.6 and iPadOS 15.6. An app may be able to…

Fix: 8.7 / 15.6+
Fix from $1,600 2023-02-27