Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.3
CVE-2020-36647
A vulnerability classified as critical has been found in YunoHost-Apps transmission_ynh. Affected is an unknown function of the file conf/nginx.conf.…
Transmission Ynh
10-25-2020+
CRITICAL 9.8
CVE-2015-10024
A vulnerability classified as critical was found in hoffie larasync. This vulnerability affects unknown code of the file repository/content/file_stor…
Larasync
2015-01-20+
CRITICAL 9.8
CVE-2022-4880
A vulnerability was found in stakira OpenUtau. It has been classified as critical. This affects the function VoicebankInstaller of the file OpenUtau.…
Openutau
0.0.991+
MEDIUM 5.3
CVE-2019-25099
A vulnerability classified as critical was found in Arthmoor QSF-Portal. This vulnerability affects unknown code of the file index.php. The manipulat…
Qsf Portal
2019-04-29+
MEDIUM 5.3
CVE-2022-4878
A vulnerability classified as critical has been found in JATOS. Affected is the function ZipUtil of the file modules/common/app/utils/common/ZipUtil.…
Jatos
after 3.7.5
CRITICAL 9.8
CVE-2019-25097
A vulnerability was found in soerennb eXtplorer up to 2.1.12 and classified as critical. Affected by this issue is some unknown functionality of the …
Extplorer
2.1.13+
CRITICAL 9.8
CVE-2019-25098
A vulnerability was found in soerennb eXtplorer up to 2.1.12. It has been classified as critical. This affects an unknown part of the file include/ar…
Extplorer
2.1.13+
HIGH 7.5
CVE-2022-37934
A potential security vulnerability has been identified in HPE OfficeConnect 1820, and 1850 switch series. The vulnerability could be remotely exploit…
Officeconnect 1820 24g Poe\+ \(185w\) Switch J9983a Firmware
Mitigation only
CRITICAL 9.8
CVE-2020-36639
A vulnerability has been found in AlliedModders AMX Mod X on Windows and classified as critical. This vulnerability affects the function cmdVoteMap o…
Amx Mod X
2020-05-28+
HIGH 8.6
CVE-2022-38723
Gravitee API Management before 3.15.13 allows path traversal through HTML injection.
Api Management
3.15.3+
HIGH 8.1
CVE-2022-36943
SSZipArchive versions 2.5.3 and older contain an arbitrary file write vulnerability due to lack of sanitization on paths which are symlinks. SSZipArc…
Ziparchive
after 2.5.3
HIGH 7.2
CVE-2022-45867
MyBB before 1.8.33 allows Directory Traversal. The Admin CP Languages module allows remote authenticated users, with high privileges, to achieve loca…
Mybb
1.8.33+
MEDIUM 6.5
CVE-2022-46305
ChangingTec ServiSign component has a path traversal vulnerability. An unauthenticated LAN attacker can exploit this vulnerability to bypass authenti…
Servisign
Mitigation only
HIGH 7.8
CVE-2022-46306
ChangingTec ServiSign component has a path traversal vulnerability due to insufficient filtering for special characters in the DLL file path. An unau…
Servisign
Mitigation only
MEDIUM 6.5
CVE-2022-46309
Vitals ESP upload function has a path traversal vulnerability. A remote attacker with general user privilege can exploit this vulnerability to access…
Vitals Esp
after 6.2.0
HIGH 7.5
CVE-2022-39040
aEnrich a+HRD log read function has a path traversal vulnerability. An unauthenticated remote attacker can exploit this vulnerability to bypass authe…
A\+hrd
Mitigation only
HIGH 7.5
CVE-2014-125033
A vulnerability was found in rails-cv-app. It has been rated as problematic. Affected by this issue is some unknown functionality of the file app/con…
Rails Cv App
2014-11-16+
HIGH 7.5
CVE-2017-20152
A vulnerability, which was classified as problematic, was found in aerouk imageserve. Affected is an unknown function of the file public/viewer.php o…
Imageserve
Patch available
MEDIUM 5.3
CVE-2018-25059
A vulnerability was found in pastebinit up to 0.2.2 and classified as problematic. Affected by this issue is the function pasteHandler of the file se…
Pastebinit
after 0.2.2
HIGH 7.5
CVE-2022-38205
In some non-default installations of Esri Portal for ArcGIS versions 10.9.1 and below, a directory traversal issue may allow a remote, unauthenticate…
Portal For Arcgis
after 10.9.1
HIGH 8.8
CVE-2022-46178
MeterSphere is a one-stop open source continuous testing platform, covering test management, interface testing, UI testing and performance testing. V…
Metersphere
2.5.1+
CRITICAL 9.8
CVE-2022-4779
StreamX applications from versions 6.02.01 to 6.04.34 are affected by a logic bug that allows to bypass the implemented authentication scheme.
Stream…
Streamx
after 6.04.34
MEDIUM 6.5
CVE-2022-4778
StreamX applications from versions 6.02.01 to 6.04.34 are affected by a path traversal vulnerability that allows authenticated users to get unauthori…
Streamx
after 6.04.34
HIGH 7.8
CVE-2022-44564
Huawei Aslan Children's Watch has a path traversal vulnerability. Successful exploitation may allow attackers to access or modify protected system re…
Aslan Al10 Firmware
after 11.1.0.10118
HIGH 7.5
CVE-2022-38202
There is a path traversal vulnerability in Esri ArcGIS Server versions 10.9.1 and below. Successful exploitation may allow a remote, unauthenticated …
Arcgis Server
after 10.9.1
HIGH 7.8
CVE-2022-4772
A vulnerability was found in Widoco and classified as critical. Affected by this issue is the function unZipIt of the file src/main/java/widoco/Widoc…
Widoco
2022-07-29+
CRITICAL 9.1
CVE-2018-25046
Due to improper path sanitization, archives containing relative file paths can cause files to be written (or overwritten) outside of the target direc…
Archiver
2018-05-23+
HIGH 7.5
CVE-2019-25073
Improper path sanitization in github.com/goadesign/goa before v3.0.9, v2.0.10, or v1.4.3 allow remote attackers to read files outside of the intended…
Goa
1.4.3 / 2.0.10+
HIGH 7.5
CVE-2020-36559
Due to improper sanitization of user input, HTTPEngine.Handle allows for directory traversal, allowing an attacker to read files outside of the targe…
Aah
0.12.4+
CRITICAL 9.1
CVE-2020-36560
Due to improper path sanitization, archives containing relative file paths can cause files to be written (or overwritten) outside of the target direc…
Go Unzip
1.0.0+