Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
MEDIUM 6.5 CVE-2023-6757 A vulnerability was found in Thecosy IceCMS 2.0.1. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of… Icecms No fix yet Fix from $1,6002023-12-13 MEDIUM 5.7 CVE-2023-45725 Design document functions which receive a user http request object may expose authorization or session cookie headers of the user who accesses the do… Couchdb after 3.3.2 Fix from $1,6002023-12-13 MEDIUM 5.3 CVE-2023-50263 Nautobot is a Network Source of Truth and Network Automation Platform built as a web application atop the Django Python framework with a PostgreSQL o… Nautobot 1.6.7 / 2.0.6+ Fix from $1,6002023-12-12 CRITICAL 9.1 CVE-2023-48225 Laf is a cloud development platform. Prior to version 1.0.0-beta.13, the control of LAF app enV is not strict enough, and in certain scenarios of pri… Laf No fix yet Fix from $2,3002023-12-12 MEDIUM 5.3 CVE-2023-49278 Umbraco is an ASP.NET content management system (CMS). Starting in version 8.0.0 and prior to versions 8.18.10, 10.8.1, and 12.3.4, a brute force exp… Umbraco Cms 8.18.10 / 10.8.1+ Fix from $1,6002023-12-12 MEDIUM 5.3 CVE-2023-49274 Umbraco is an ASP.NET content management system (CMS). Starting in version 8.0.0 and prior to versions 8.18.10, 10.8.1, and 12.3.4, a user enumeratio… Umbraco Cms 8.18.10 / 10.8.1+ Fix from $1,6002023-12-12 MEDIUM 6.5 CVE-2023-35636EPSS 18% Microsoft Outlook Information Disclosure Vulnerability 365 Apps Patch available Fix from $1,6002023-12-12 MEDIUM 5.3 CVE-2023-46701 Mattermost fails to perform authorization checks in the /plugins/playbooks/api/v0/runs/add-to-timeline-dialog endpoint of the Playbooks plugin allow… Mattermost Server after 9.2.1 Fix from $1,6002023-12-12 MEDIUM 5.5 CVE-2023-42884 This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sonoma 14.2, iOS 17.2 and iPadOS 17.2, macOS … Ipados 13.6.3 / 14.2+ Fix from $1,6002023-12-12 MEDIUM 5.3 CVE-2023-6615 A vulnerability, which was classified as problematic, has been found in Typecho 1.2.1. Affected by this issue is some unknown functionality of the fi… Typecho No fix yet Fix from $1,6002023-12-08 MEDIUM 5.3 CVE-2023-6393 A flaw was found in the Quarkus Cache Runtime. When request processing utilizes a Uni cached using @CacheResult and the cached Uni reuses the initial… Build Of Quarkus Mitigation only Fix from $1,6002023-12-06 MEDIUM 5.3 CVE-2023-6459 Mattermost is grouping calls in the /metrics endpoint by id and reports that id in the response. Since this id is the channelID, the public /metrics … Mattermost Server 7.8.14 / 8.1.5+ Fix from $1,6002023-12-06 MEDIUM 5.3 CVE-2023-49282 msgraph-sdk-php is the Microsoft Graph Library for PHP. The Microsoft Graph PHP SDK published packages which contained test code that enabled the use… Graph 1.109.1 / 2.0.1+ Fix from $1,6002023-12-05 MEDIUM 5.3 CVE-2023-49283 microsoft-graph-core the Microsoft Graph Library for PHP. The Microsoft Graph Beta PHP SDK published packages which contained test code that enabled … Graph 2.0.2+ Fix from $1,6002023-12-05 MEDIUM 6.5 CVE-2023-37868 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Leap13 Premium Addons PRO.This issue affects Premium Addons PRO: from n/a… Premium Addons after 2.9.0 Fix from $1,6002023-11-30 MEDIUM 6.5 CVE-2023-26533 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gesundheit Bewegt GmbH Zippy.This issue affects Zippy: from n/a through 1… Zippy after 1.6.1 Fix from $1,6002023-11-30 MEDIUM 5.3 CVE-2023-36507 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Repute Infosystems BookingPress – Appointment Booking Calendar Plugin and… Bookingpress after 1.0.64 Fix from $1,6002023-11-30 MEDIUM 5.3 CVE-2023-36523 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gopi Ramasamy Email download link.This issue affects Email download link:… Email Download Link after 3.7 Fix from $1,6002023-11-30 MEDIUM 5.3 CVE-2023-25057 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Libsyn Libsyn Publisher Hub.This issue affects Libsyn Publisher Hub: from… Libsyn Publisher Hub after 1.3.2 Fix from $1,6002023-11-30 MEDIUM 5.3 CVE-2023-46820 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Iulia Cazan Image Regenerate & Select Crop.This issue affects Image Regen… Image Regenerate \& Select Crop after 7.3.0 Fix from $1,6002023-11-30 MEDIUM 6.5 CVE-2023-48333 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pluggabl LLC Booster for WooCommerce.This issue affects Booster for WooCo… Booster For Woocommerce after 7.1.1 Fix from $1,6002023-11-30 HIGH 7.5 CVE-2023-40662 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Jonk @ Follow me Darling Cookies and Content Security Policy.This issue a… Cookies And Content Security Policy 2.16+ Fix from $1,9502023-11-30 HIGH 7.5 CVE-2023-41735 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gopi Ramasamy Email posts to subscribers.This issue affects Email posts t… Email Posts To Subscribers after 6.2 Fix from $1,9502023-11-30 HIGH 7.5 CVE-2023-44150 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ProfilePress Membership Team Paid Membership Plugin, Ecommerce, Registrat… Profilepress 4.13.3+ Fix from $1,9502023-11-30 HIGH 7.5 CVE-2023-45066 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Smackcoders Export All Posts, Products, Orders, Refunds & Users.This issu… Export All Posts\, Products\, Orders\, Refunds \& Users after 2.4.1 Fix from $1,9502023-11-30 MEDIUM 5.3 CVE-2023-45834 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Libsyn Libsyn Publisher Hub.This issue affects Libsyn Publisher Hub: from… Libsyn Publisher Hub after 1.4.4 Fix from $1,6002023-11-30 HIGH 7.5 CVE-2023-37972 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in MultiVendorX Product Stock Manager & Notifier for WooCommerce.This issue … Product Stock Manager \& Notifier For Woocommerce 2.0.2+ Fix from $1,9502023-11-30 HIGH 7.5 CVE-2023-40211 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in PickPlugins Post Grid Combo – 36+ Gutenberg Blocks.This issue affects Pos… Post Grid Combo 2.2.51+ Fix from $1,9502023-11-30 HIGH 7.5 CVE-2023-40600 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Exactly WWW EWWW Image Optimizer. It works only when debug.log is turned … Image Optimizer 7.2.1+ Fix from $1,9502023-11-30 HIGH 7.5 CVE-2023-6136 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Bowo Debug Log Manager.This issue affects Debug Log Manager: from n/a thr… Debug Log Manager 2.3.1+ Fix from $1,9502023-11-30