Vulnerability index

Browse CVEs

5,953 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
Wegia CRITICAL 9.8
CVE-2024-57032

WeGIA < 3.2.0 is vulnerable to Incorrect Access Control in controle/control.php. The application does not validate the value of the old password, so …

Fix: 3.2.0+
Fix from $2,300 2025-01-17
Wp Hotel Booking MEDIUM 5.3
CVE-2024-12370

The WP Hotel Booking plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check when adding rooms in a…

Fix: 2.1.6+
Fix from $1,600 2025-01-17
Unclassified HIGH 8.7
CVE-2024-55954

OpenObserve is a cloud-native observability platform. A vulnerability in the user management endpoint `/api/{org_id}/users/{email_id}` allows an "Adm…

Mitigation only
Fix from $1,950 2025-01-16
Dir 878 Firmware HIGH 7.5
CVE-2025-0481

A vulnerability classified as problematic has been found in D-Link DIR-878 1.03. Affected is an unknown function of the file /dllog.cgi of the compon…

Mitigation only
Fix from $1,950 2025-01-15
Visual Studio 2022 HIGH 7.3
CVE-2025-21405

Visual Studio Elevation of Privilege Vulnerability

Fix: 17.12.4+
Fix from $1,950 2025-01-14
Windows 10 1809 MEDIUM 5.5
CVE-2025-21340

Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability

Fix: 10.0.17763.6775 / 10.0.19044.5371+
Fix from $1,600 2025-01-14
Windows 10 1507 MEDIUM 6.5
CVE-2025-21301

Windows Geolocation Service Information Disclosure Vulnerability

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,600 2025-01-14
Windows 10 1507 HIGH 8.8
CVE-2025-21293EPSS 19%

Active Directory Domain Services Elevation of Privilege Vulnerability

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,950 2025-01-14
Windows 10 1507 MEDIUM 6.1
CVE-2025-21202

Windows Recovery Environment Agent Elevation of Privilege Vulnerability

Fix: 10.0.10240.20890 / 10.0.14393.7699+
Fix from $1,600 2025-01-14
Lingdang Crm CRITICAL 9.8
CVE-2025-0463

A vulnerability was found in Shanghai Lingdang Information Technology Lingdang CRM up to 8.6.0.0. It has been classified as critical. Affected is an …

Mitigation only
Fix from $2,300 2025-01-14
Unclassified HIGH 7.3
CVE-2025-0460

A vulnerability, which was classified as critical, was found in Blog Botz for Journal Theme 1.0 on OpenCart. This affects an unknown part of the file…

Mitigation only
Fix from $1,950 2025-01-14
Reggie HIGH 8.8
CVE-2025-0402

A vulnerability classified as critical was found in 1902756969 reggie 1.0. Affected by this vulnerability is the function upload of the file src/main…

Mitigation only
Fix from $1,950 2025-01-13
Reggie MEDIUM 5.3
CVE-2025-0403

A vulnerability, which was classified as problematic, has been found in 1902756969 reggie 1.0. Affected by this issue is some unknown functionality o…

No fix yet
Fix from $1,600 2025-01-13
Starsea Mall HIGH 7.2
CVE-2025-0399

A vulnerability was found in StarSea99 starsea-mall 1.0. It has been declared as critical. This vulnerability affects the function UploadController o…

Mitigation only
Fix from $1,950 2025-01-12
Azure Marketplace MEDIUM 6.5
CVE-2025-21380

Improper access control in Azure SaaS Resources allows an authorized attacker to disclose information over a network.

No fix yet
Fix from $1,600 2025-01-09
Open Social HIGH 7.5
CVE-2024-13240

Improper Access Control vulnerability in Drupal Open Social allows Collect Data from Common Resource Locations.This issue affects Open Social: from 0…

Fix: 12.0.5+
Fix from $1,950 2025-01-09
Content Management System HIGH 7.2
CVE-2025-0346

A vulnerability was found in code-projects Content Management System 1.0. It has been classified as critical. This affects an unknown part of the fil…

No fix yet
Fix from $1,950 2025-01-09
Computer Laboratory Management System CRITICAL 9.8
CVE-2025-0341

A vulnerability, which was classified as critical, has been found in CampCodes Computer Laboratory Management System 1.0. Affected by this issue is s…

No fix yet
Fix from $2,300 2025-01-09
Online Bike Rental System CRITICAL 9.8
CVE-2025-0335

A vulnerability was found in code-projects Online Bike Rental System 1.0 and classified as critical. Affected by this issue is some unknown functiona…

No fix yet
Fix from $2,300 2025-01-09
Houserent HIGH 8.8
CVE-2024-13211

A vulnerability was found in SingMR HouseRent 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file sr…

Mitigation only
Fix from $1,950 2025-01-09
Houserent HIGH 8.8
CVE-2024-13212

A vulnerability classified as critical has been found in SingMR HouseRent 1.0. This affects the function singleUpload/upload of the file src/main/jav…

Mitigation only
Fix from $1,950 2025-01-09
Bookstore HIGH 7.2
CVE-2024-13210

A vulnerability was found in donglight bookstore电商书城系统说明 1.0. It has been declared as critical. Affected by this vulnerability is the functio…

No fix yet
Fix from $1,950 2025-01-09
Springboot Blog HIGH 7.2
CVE-2024-13201

A vulnerability has been found in wander-chu SpringBoot-Blog 1.0 and classified as critical. This vulnerability affects the function upload of the fi…

No fix yet
Fix from $1,950 2025-01-09
Springboot Blog HIGH 7.5
CVE-2024-13200

A vulnerability, which was classified as critical, was found in wander-chu SpringBoot-Blog 1.0. This affects the function preHandle of the file src/m…

No fix yet
Fix from $1,950 2025-01-09
Myblog CRITICAL 9.8
CVE-2024-13191

A vulnerability, which was classified as critical, has been found in ZeroWdd myblog 1.0. This issue affects the function upload of the file src/main/…

No fix yet
Fix from $2,300 2025-01-08
Joomla\! HIGH 7.5
CVE-2024-40749

Improper Access Controls allows access to protected views.

Fix: 3.10.20 / 4.4.10+
Fix from $1,950 2025-01-07
My Blog CRITICAL 9.8
CVE-2024-13145

A vulnerability classified as critical was found in zhenfeng13 My-Blog 1.0. Affected by this vulnerability is the function upload of the file src/mai…

No fix yet
Fix from $2,300 2025-01-06
My Blog CRITICAL 9.8
CVE-2024-13144

A vulnerability classified as critical has been found in zhenfeng13 My-Blog 1.0. Affected is the function uploadFileByEditomd of the file src/main/ja…

No fix yet
Fix from $2,300 2025-01-06
Unclassified MEDIUM 5.3
CVE-2025-0224

A vulnerability was found in Provision-ISR SH-4050A-2, SH-4100A-2L(MM), SH-8100A-2L(MM), SH-16200A-2(1U), SH-16200A-5(1U) and NVR5-8200PX up to 20241…

Mitigation only
Fix from $1,600 2025-01-05
Mysiteforme HIGH 8.8
CVE-2024-13138

A vulnerability was found in wangl1989 mysiteforme 1.0. It has been declared as critical. This vulnerability affects the function upload of the file …

No fix yet
Fix from $1,950 2025-01-05