Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.0
CVE-2024-20904
Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Pod Admin). Supported versions that are…
Business Intelligence
Patch available
HIGH 7.5
CVE-2023-45236
EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This
vulnerability can be exploited by an attacker to gain unaut…
Edk2
after 202311
CRITICAL 9.1
CVE-2024-0569
A vulnerability classified as problematic has been found in Totolink T8 4.1.5cu.833_20220905. This affects the function getSysStatusCfg of the file /…
T8 Firmware
No fix yet
CRITICAL 9.1
CVE-2023-52101
Component exposure vulnerability in the Wi-Fi module. Successful exploitation of this vulnerability may affect service availability and integrity.
Emui
No fix yet
HIGH 7.5
CVE-2023-44112
Out-of-bounds access vulnerability in the device authentication module. Successful exploitation of this vulnerability may affect confidentiality.
Emui
No fix yet
MEDIUM 6.5
CVE-2023-50290EPSS 68%
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Solr.
The Solr Metrics API publishes all unprotected environment v…
Solr
9.3.0+
HIGH 7.5
CVE-2024-0490
A vulnerability was found in Huaxia ERP up to 3.1. It has been rated as problematic. This issue affects some unknown processing of the file /user/get…
Huaxia Erp
after 3.1
HIGH 7.5
CVE-2024-0472
A vulnerability was found in code-projects Dormitory Management System 1.0. It has been rated as problematic. This issue affects some unknown process…
Dormitory Management System
Mitigation only
HIGH 7.5
CVE-2023-49261
The "tokenKey" value used in user authorization is visible in the HTML source of the login page.
H8951 4g Esp Firmware
2310271149+
HIGH 7.5
CVE-2023-6266
The Backup Migration plugin for WordPress is vulnerable to unauthorized access of data due to insufficient path and file validation on the BMI_BACKUP…
Backup Migration
after 1.3.6
MEDIUM 5.5
CVE-2023-41987
This issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. An app may be able to access sensitive user data.
macOS
14.0+
MEDIUM 5.5
CVE-2023-42829
The issue was addressed with additional restrictions on the observability of app states. This issue is fixed in macOS Big Sur 11.7.9, macOS Monterey …
macOS
11.7.9 / 12.6.8+
MEDIUM 6.5
CVE-2023-40385
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sonoma 14, Safari 17, iOS 17 and iPadOS 17. A remote attacker …
Safari
14.0 / 17.0+
MEDIUM 5.5
CVE-2023-40411
This issue was addressed with improved data protection. This issue is fixed in macOS Sonoma 14. An app may be able to access user-sensitive data.
macOS
14.0+
MEDIUM 5.5
CVE-2022-32931
This issue was addressed with improved data protection. This issue is fixed in macOS Ventura 13. An app with root privileges may be able to access pr…
macOS
13.0+
MEDIUM 6.5
CVE-2024-21320EPSS 23%
Windows Themes Spoofing Vulnerability
Windows 10 1507
10.0.10240.20402 / 10.0.14393.6614+
MEDIUM 5.5
CVE-2024-0340
A vulnerability was found in vhost_new_msg in drivers/vhost/vhost.c in the Linux kernel, which does not properly initialize memory in messages passed…
Linux Kernel
6.4+
HIGH 7.5
CVE-2022-40696
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in WP Engine Advanced Custom Fields (ACF).This issue affects Advanced Custom…
Advanced Custom Fields
after 6.0.2
HIGH 7.5
CVE-2022-45354EPSS 38%
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in WPChill Download Monitor.This issue affects Download Monitor: from n/a th…
Download Monitor
after 4.7.60
HIGH 7.5
CVE-2023-51406
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Ninja Team FastDup – Fastest WordPress Migration & Duplicator.This issue …
Fastdup
after 2.1.7
HIGH 7.5
CVE-2023-52208
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Constant Contact Constant Contact Forms.This issue affects Constant Conta…
Constant Contact Forms
after 2.4.2
HIGH 7.5
CVE-2023-52190
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in WP Swings Coupon Referral Program.This issue affects Coupon Referral Prog…
Coupon Referral Program
after 1.7.2
HIGH 7.5
CVE-2024-0305EPSS 67%
A vulnerability was found in Guangzhou Yingke Electronic Technology Ncast up to 2017 and classified as problematic. Affected by this issue is some un…
Ncast
after 2017
MEDIUM 5.3
CVE-2023-52126
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Suman Bhattarai Send Users Email.This issue affects Send Users Email: fro…
Send Users Email
after 1.4.3
MEDIUM 5.3
CVE-2023-52148
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in wp.Insider, wpaffiliatemgr Affiliates Manager.This issue affects Affiliat…
Affiliates Manager
after 2.9.30
MEDIUM 5.3
CVE-2023-52151
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Uncanny Automator, Uncanny Owl Uncanny Automator – Automate everything wi…
Uncanny Automator
after 5.1.0.2
CRITICAL 9.8
CVE-2023-51154
Jizhicms v2.5 was discovered to contain an arbitrary file download vulnerability via the component /admin/c/PluginsController.php.
Jizhicms
No fix yet
MEDIUM 6.5
CVE-2023-50253
Laf is a cloud development platform. In the Laf version design, the log uses communication with k8s to quickly retrieve logs from the container witho…
Laf
Patch available
CRITICAL 9.8
CVE-2023-46741
CubeFS is an open-source cloud-native file storage system. A vulnerability was found in CubeFS prior to version 3.3.1 that could allow users to read …
Cubefs
3.3.1+
MEDIUM 5.5
CVE-2023-4164
There is a possible information disclosure due to a missing permission check. This could lead to local information disclosure of health data with no …
Android
Mitigation only