Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 8.8
CVE-2022-29241
Jupyter Server provides the backend (i.e. the core services, APIs, and REST endpoints) for Jupyter web applications like Jupyter Notebook. Prior to v…
Jupyter Server
1.17.0+
HIGH 7.5
CVE-2022-31309
A vulnerability in live_check.shtml of WAVLINK AERIAL X 1200M M79X3.V5030.180719 allows attackers to obtain sensitive router information via executio…
Aerial X 1200m Firmware
No fix yet
HIGH 7.5
CVE-2022-31308
A vulnerability in live_mfg.shtml of WAVLINK AERIAL X 1200M M79X3.V5030.191012 allows attackers to obtain sensitive router information via execution …
Aerial X 1200m Firmware
No fix yet
MEDIUM 5.5
CVE-2021-35080
Disabled SMMU from secure side while RPM is assigned a secure stream can lead to information disclosure in Snapdragon Industrial IOT, Snapdragon Mobi…
Qcm2290 Firmware
Mitigation only
MEDIUM 5.5
CVE-2021-35070
RPM secure Stream can access any secure resource due to improper SMMU configuration and can lead to information disclosure in Snapdragon Industrial I…
Qcm6125 Firmware
Mitigation only
HIGH 7.5
CVE-2022-32192
Couchbase Server 5.x through 7.x before 7.0.4 exposes Sensitive Information to an Unauthorized Actor.
Couchbase Server
7.0.4+
HIGH 7.5
CVE-2022-29244
npm pack ignores root-level .gitignore and .npmignore file exclusion directives when run in a workspace or with a workspace flag (ie. `--workspaces`,…
Npm
8.11.0+
MEDIUM 5.3
CVE-2022-1595
The HC Custom WP-Admin URL WordPress plugin through 1.4 leaks the secret login URL when sending a specific crafted request
Hc Custom Wp Admin Url
after 1.4
MEDIUM 5.3
CVE-2022-32740
A reply to a forwarded email article by a 3rd party could unintensionally expose the email content to the ticket customer under certain circumstances.
Otrs
7.0.35 / 8.0.23+
MEDIUM 5.3
CVE-2022-32741
Attacker is able to determine if the provided username exists (and it's valid) using Request New Password feature, based on the response time.
Otrs
7.0.35 / 8.0.23+
MEDIUM 5.3
CVE-2022-32739
When Secure::DisableBanner system configuration has been disabled and agent shares his calendar via public URL, received ICS file contains OTRS relea…
Calendar Resource Planning
7.0.31 / 7.0.35+
HIGH 7.5
CVE-2022-31042
Guzzle is an open source PHP HTTP client. In affected versions the `Cookie` headers on requests are sensitive information. On making a request using …
Drupal
6.5.7 / 7.4.4+
HIGH 7.5
CVE-2022-31043
Guzzle is an open source PHP HTTP client. In affected versions `Authorization` headers on requests are sensitive information. On making a request usi…
Drupal
6.5.7 / 7.4.4+
HIGH 7.5
CVE-2017-20022
A vulnerability has been found in Solare Solar-Log 2.8.4-56/3.5.2-85 and classified as problematic. This vulnerability affects unknown code. The mani…
Solar Log 250 Firmware
No fix yet
HIGH 7.5
CVE-2017-20019
A vulnerability classified as problematic was found in Solare Solar-Log 2.8.4-56/3.5.2-85. Affected by this vulnerability is an unknown functionality…
Solar Log 250 Firmware
No fix yet
HIGH 7.5
CVE-2022-31033
The Mechanize library is used for automating interaction with websites. Mechanize automatically stores and sends cookies, follows redirects, and can …
Mechanize
2.8.5+
HIGH 7.5
CVE-2022-31051
semantic-release is an open source npm package for automated version management and package publishing. In affected versions secrets that would norma…
Semantic Release
19.0.3+
MEDIUM 5.3
CVE-2022-28614
The ap_rwrite() function in Apache HTTP Server 2.4.53 and earlier may read unintended memory if an attacker can cause the server to reflect very larg…
HTTP Server
after 2.4.53
HIGH 7.5
CVE-2022-30556
Apache HTTP Server 2.4.53 and earlier may return lengths to applications calling r:wsread() that point past the end of the storage allocated for the …
HTTP Server
2.4.54+
HIGH 7.5
CVE-2019-25069
A vulnerability, which was classified as problematic, has been found in Axios Italia Axios RE 1.7.0/7.0.0. This issue affects some unknown processing…
Registro Elettronico
Mitigation only
MEDIUM 5.3
CVE-2022-30734
Sensitive information exposure in Sign-out log in Samsung Account prior to version 13.2.00.6 allows attackers to get an user email or phone number wi…
Account
13.2.00.6+
HIGH 7.5
CVE-2022-30735
Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the access_token without permission.
Account
13.2.00.6+
MEDIUM 5.3
CVE-2022-30736
Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the data of contact and gallery without per…
Account
13.2.00.6+
MEDIUM 5.3
CVE-2022-30737
Implicit Intent hijacking vulnerability in Samsung Account prior to version 13.2.00.6 allows attackers to get email ID.
Account
13.2.00.6+
MEDIUM 5.3
CVE-2022-30743
Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the data of contact and gallery without per…
Account
13.2.00.6+
HIGH 7.5
CVE-2022-30732
Exposure of Sensitive Information vulnerability in Samsung Account prior to version 13.2.00.6 allows attacker to access sensitive information via onA…
Account
13.2.00.6+
MEDIUM 5.3
CVE-2022-30733
Sensitive information exposure in Sign-in log in Samsung Account prior to version 13.2.00.6 allows attackers to get an user email or phone number wit…
Account
13.2.00.6+
MEDIUM 6.5
CVE-2020-36532
A vulnerability has been found in Klapp App and classified as problematic. This vulnerability affects unknown code of the component Authorization. Th…
App
No fix yet
HIGH 7.2
CVE-2022-30586
Gradle Enterprise through 2022.2.2 has Incorrect Access Control that leads to code execution.
Gradle
1.3.1+
MEDIUM 5.5
CVE-2022-28224
Clusters using Calico (version 3.22.1 and below), Calico Enterprise (version 3.12.0 and below), may be vulnerable to route hijacking with the floatin…
Calico
3.11.4 / 3.20.5+