Vulnerability index

Browse CVEs

7,744 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
MEDIUM 5.5 CVE-2024-39527 An Exposure of Sensitive Information to an Unauthorized Actor vulnerability in the command-line interface (CLI) of Juniper Networks Junos OS on SRX S… Junos 21.4+ Fix from $1,6002024-10-11 MEDIUM 6.5 CVE-2024-9538 The ShopLentor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.9.8 via the 'render' func… Shoplentor 2.9.9+ Fix from $1,6002024-10-11 HIGH 7.5 CVE-2024-47868 Gradio is an open-source Python package designed for quick prototyping. This is a **data validation vulnerability** affecting several Gradio componen… Gradio 5.0.0+ Fix from $1,9502024-10-10 HIGH 7.5 CVE-2024-6747 Information leakage in mknotifyd in Checkmk before 2.3.0p18, 2.2.0p36, 2.1.0p49 and in 2.0.0p39 (EOL) allows attacker to get potentially sensitive da… Checkmk 2.1.0+ Fix from $1,9502024-10-10 MEDIUM 5.7 CVE-2024-30118 HCL Connections is vulnerable to an information disclosure vulnerability which could allow a user to obtain sensitive information they are not entitl… Connections Mitigation only Fix from $1,6002024-10-09 HIGH 8.1 CVE-2024-3656 A flaw was found in Keycloak. Certain endpoints in Keycloak's admin REST API allow low-privilege users to access administrative functionalities. This… No fix yet Fix from $1,9502024-10-09 HIGH 7.5 CVE-2024-43610 Exposure of Sensitive Information to an Unauthorized Actor in Copilot Studio allows a unauthenticated attacker to view sensitive information through … Copilot Studio Mitigation only Fix from $1,9502024-10-09 MEDIUM 6.5 CVE-2024-43609 Microsoft Office Spoofing Vulnerability 365 Apps Patch available Fix from $1,6002024-10-08 CRITICAL 9.8 CVE-2024-8884 CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists that could cause exposure of credentials when attacker has a… Mitigation only Fix from $2,3002024-10-08 MEDIUM 5.3 CVE-2024-47344 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Stylemix uListing ulisting.This issue affects uListing: from n/a through … Mitigation only Fix from $1,6002024-10-07 HIGH 7.8 CVE-2024-45245 Diebold Nixdorf – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor No fix yet Fix from $1,9502024-10-06 MEDIUM 6.9 CVE-2024-47848 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in The Wikimedia Foundation Mediawiki - PageTriage allows Authentication Byp… Mitigation only Fix from $1,6002024-10-05 HIGH 8.6 CVE-2024-20490 A vulnerability in a logging function of Cisco Nexus Dashboard Fabric Controller (NDFC) and Cisco Nexus Dashboard Orchestrator (NDO) could allow an a… Nexus Dashboard Fabric Controller 4.2 / 4.4.1.1012+ Fix from $1,9502024-10-02 HIGH 8.6 CVE-2024-20491 A vulnerability in a logging function of Cisco Nexus Dashboard Insights could allow an attacker with access to a tech support file to view sensitive … Nexus Dashboard Fabric Controller 4.2 / 4.4.1.1012+ Fix from $1,9502024-10-02 MEDIUM 6.3 CVE-2024-46548 TP-Link Tapo P125M and Kasa KP125M v1.0.3 was discovered to improperly validate certificates, allowing attackers to eavesdrop on communications and a… Mitigation only Fix from $1,6002024-09-30 MEDIUM 6.5 CVE-2024-47532 RestrictedPython is a restricted execution environment for Python to run untrusted code. A user can gain access to protected (and potentially sensibl… Restrictedpython 7.3+ Fix from $1,6002024-09-30 MEDIUM 6.5 CVE-2024-45792 Mantis Bug Tracker (MantisBT) is an open source issue tracker. Using a crafted POST request, an unprivileged, registered user is able to retrieve inf… Mantisbt 2.26.4+ Fix from $1,6002024-09-30 HIGH 7.5 CVE-2024-46471 The Directory Listing in /uploads/ Folder in CodeAstro Membership Management System 1.0 exposes the structure and contents of directories, potentiall… Membership Management System No fix yet Fix from $1,9502024-09-27 HIGH 7.5 CVE-2024-47197 Exposure of Sensitive Information to an Unauthorized Actor, Insecure Storage of Sensitive Information vulnerability in Maven Archetype Plugin. This … Maven Archetype Mitigation only Fix from $1,9502024-09-26 MEDIUM 5.3 CVE-2024-43237 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Steve Burge WordPress Tag Cloud Plugin – Tag Groups tag-groups.This issue… Mitigation only Fix from $1,6002024-09-25 MEDIUM 6.5 CVE-2024-8483 The MAS Static Content plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.0.8 via the static_content(… Mas Static Content 1.0.9+ Fix from $1,6002024-09-25 MEDIUM 5.3 CVE-2024-7426 The Community by PeepSo – Social Network, Membership, Registration, User Profiles plugin for WordPress is vulnerable to Full Path Disclosure in all v… Peepso 6.4.6.0+ Fix from $1,6002024-09-25 HIGH 7.5 CVE-2023-5359 The W3 Total Cache plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.7.5 via Google OAuth API … W3 Total Cache 2.7.6+ Fix from $1,9502024-09-25 CRITICAL 9.1 CVE-2024-42351 Galaxy is a free, open-source system for analyzing data, authoring workflows, training and education, publishing tools, managing infrastructure, and … Galaxy 21.05+ Fix from $2,3002024-09-20 MEDIUM 6.5 CVE-2024-47060 Zitadel is an open source identity management platform. In Zitadel, even after an organization is deactivated, associated projects, respectively thei… Zitadel 2.54.10 / 2.55.8+ Fix from $1,6002024-09-20 MEDIUM 5.3 CVE-2024-46979 XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It's possible to get access to notification … Xwiki 14.10.21 / 15.5.5+ Fix from $1,6002024-09-18 HIGH 7.7 CVE-2024-46987EPSS 15% Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails. A path traversal vulnerability accessible via MediaControlle… Camaleon Cms 2.8.2+ Fix from $1,9502024-09-18 MEDIUM 6.5 CVE-2024-8969 OMFLOW from The SYSCOM Group has a vulnerability involving the exposure of sensitive data. This allows remote attackers who have logged into the syst… Mitigation only Fix from $1,6002024-09-18 MEDIUM 5.5 CVE-2024-44163 The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. A malicious application… macOS 13.7 / 14.7+ Fix from $1,6002024-09-17 MEDIUM 5.5 CVE-2024-44181 An issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. An … macOS 13.7 / 14.7+ Fix from $1,6002024-09-17