Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
HIGH 7.5 CVE-2023-52185 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Everestthemes Everest Backup – WordPress Cloud Backup, Migration, Restore… Everest Backup 2.2.0+ Fix from $1,9502023-12-31 HIGH 7.5 CVE-2023-52286 Tencent tdsqlpcloud through 1.8.5 allows unauthenticated remote attackers to discover database credentials via an index.php/api/install/get_db_info r… Tencent Distributed Sql after 1.8.5 Fix from $1,9502023-12-31 HIGH 7.5 CVE-2023-51527 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Senol Sahin AI Power: Complete AI Pack – Powered by GPT-4.This issue affe… Aipower 1.8.3+ Fix from $1,9502023-12-29 HIGH 7.5 CVE-2023-51687 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in impleCode Product Catalog Simple.This issue affects Product Catalog Simpl… Product Catalog Simple 1.7.7+ Fix from $1,9502023-12-29 HIGH 7.5 CVE-2023-51688 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in impleCode eCommerce Product Catalog Plugin for WordPress.This issue affec… Ecommerce Product Catalog 3.3.27+ Fix from $1,9502023-12-29 HIGH 7.5 CVE-2022-44589 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in miniOrange miniOrange's Google Authenticator – WordPress Two Factor Authe… Google Authenticator 5.6.2+ Fix from $1,9502023-12-29 HIGH 7.5 CVE-2022-36399 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in BoxyStudio Booked - Appointment Booking for WordPress | Calendars.This is… Booked 2.4.4+ Fix from $1,9502023-12-28 HIGH 7.5 CVE-2023-27447 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in VeronaLabs WP SMS – Messaging & SMS Notification for WordPress, WooCommer… Wp Sms 6.0.4.1+ Fix from $1,9502023-12-28 HIGH 7.5 CVE-2023-50968EPSS 63% Arbitrary file properties reading vulnerability in Apache Software Foundation Apache OFBiz when user operates an uri call without authorizations. Th… Ofbiz 18.12.11+ Fix from $1,9502023-12-26 HIGH 7.5 CVE-2023-7094 A vulnerability classified as problematic was found in Netentsec NS-ASG Application Security Gateway 6.3. Affected by this vulnerability is an unknow… Application Security Gateway No fix yet Fix from $1,9502023-12-25 MEDIUM 6.5 CVE-2023-40058 Sensitive data was added to our public-facing knowledgebase that, if exploited, could be used to access components of Access Rights Manager (ARM) if … Access Rights Manager after 2023.2.1 Fix from $1,6002023-12-21 HIGH 7.5 CVE-2023-48288 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in HM Plugin WordPress Job Board and Recruitment Plugin – JobWP.This issue a… Jobwp 2.2+ Fix from $1,9502023-12-21 HIGH 7.5 CVE-2023-49162 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in BigCommerce BigCommerce For WordPress.This issue affects BigCommerce For … Bigcommerce after 5.0.6 Fix from $1,9502023-12-21 HIGH 7.5 CVE-2023-2487 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Smackcoders Export All Posts, Products, Orders, Refunds & Users.This issu… Export All Posts\, Products\, Orders\, Refunds \& Users after 2.4.1 Fix from $1,9502023-12-21 HIGH 7.5 CVE-2023-28421 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Winwar Media WordPress Email Marketing Plugin – WP Email Capture.This iss… Wp Email Capture 3.11+ Fix from $1,9502023-12-21 HIGH 7.5 CVE-2023-49762 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in AppMySite AppMySite – Create an app with the Best Mobile App Builder.This… Appmysite after 3.11.0 Fix from $1,9502023-12-21 HIGH 7.5 CVE-2022-47597 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Popup Maker Popup Maker – Popup for opt-ins, lead gen, & more.This issue … Popup Maker 1.18.0+ Fix from $1,9502023-12-20 MEDIUM 5.3 CVE-2023-50705 An attacker could create malicious requests to obtain sensitive information about the web server. Uc 500e Firmware No fix yet Fix from $1,6002023-12-20 MEDIUM 5.7 CVE-2023-42940 A session rendering issue was addressed with improved session tracking. This issue is fixed in macOS Sonoma 14.2.1. A user who shares their screen ma… macOS 14.2.1+ Fix from $1,6002023-12-19 MEDIUM 6.5 CVE-2023-47146 IBM Qradar SIEM 7.5 could allow a privileged user to obtain sensitive domain information due to data being misidentified. IBM X-Force ID: 270372. Qradar Security Information And Event Manager Patch available Fix from $1,6002023-12-19 HIGH 7.5 CVE-2023-44983 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Aruba.It Aruba HiSpeed Cache.This issue affects Aruba HiSpeed Cache: from… Aruba Hispeed Cache after 2.0.6 Fix from $1,9502023-12-19 HIGH 7.5 CVE-2023-44991 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Jordy Meow Media File Renamer: Rename Files (Manual, Auto & AI).This issu… Media File Renamer Auto \& Manual Rename after 5.6.9 Fix from $1,9502023-12-19 HIGH 7.5 CVE-2023-44982 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Jordy Meow Perfect Images (Manage Image Sizes, Thumbnails, Replace, Retin… Perfect Images after 6.4.5 Fix from $1,9502023-12-19 HIGH 7.5 CVE-2023-50271 A potential security vulnerability has been identified with HP-UX System Management Homepage (SMH). This vulnerability could be exploited locally or … System Management Homepage No fix yet Fix from $1,9502023-12-17 MEDIUM 6.5 CVE-2023-6894 A vulnerability was found in Hikvision Intercom Broadcasting System 3.0.3_20201113_RELEASE(HIK). It has been classified as problematic. This affects … Intercom Broadcast System 4.1.0+ Fix from $1,6002023-12-17 HIGH 7.5 CVE-2023-50719EPSS 84% XWiki Platform is a generic wiki platform. Starting in 7.2-milestone-2 and prior to versions 14.10.15, 15.5.2, and 15.7-rc-1, the Solr-based search i… Xwiki 14.10.5 / 15.5.2+ Fix from $1,9502023-12-15 MEDIUM 5.3 CVE-2023-50720EPSS 59% XWiki Platform is a generic wiki platform. Prior to versions 14.10.15, 15.5.2, and 15.7-rc-1, the Solr-based search in XWiki discloses the email addr… Xwiki 14.10.5 / 15.5.2+ Fix from $1,6002023-12-15 MEDIUM 5.3 CVE-2023-0248 An attacker with physical access to the Kantech Gen1 ioSmart card reader with firmware version prior to 1.07.02 in certain circumstances can recover … Iosmart Gen 1 Firmware 1.07.02+ Fix from $1,6002023-12-14 HIGH 7.5 CVE-2023-48671 Dell vApp Manager, versions prior to 9.2.4.x contain an information disclosure vulnerability. A remote attacker could potentially exploit this vulner… Solutions Enabler Virtual Appliance 9.2.4.5 / 9.2.4.7+ Fix from $1,9502023-12-14 MEDIUM 6.5 CVE-2023-47619 Audiobookshelf is a self-hosted audiobook and podcast server. In versions 2.4.3 and prior, users with the update permission are able to read arbitrar… Audiobookshelf after 2.4.3 Fix from $1,6002023-12-13