Vulnerability index

Browse CVEs

5,953 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
CRITICAL 9.8 CVE-2024-57032 WeGIA < 3.2.0 is vulnerable to Incorrect Access Control in controle/control.php. The application does not validate the value of the old password, so … Wegia 3.2.0+ Fix from $2,3002025-01-17 MEDIUM 5.3 CVE-2024-12370 The WP Hotel Booking plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check when adding rooms in a… Wp Hotel Booking 2.1.6+ Fix from $1,6002025-01-17 HIGH 8.7 CVE-2024-55954 OpenObserve is a cloud-native observability platform. A vulnerability in the user management endpoint `/api/{org_id}/users/{email_id}` allows an "Adm… Mitigation only Fix from $1,9502025-01-16 HIGH 7.5 CVE-2025-0481 A vulnerability classified as problematic has been found in D-Link DIR-878 1.03. Affected is an unknown function of the file /dllog.cgi of the compon… Dir 878 Firmware Mitigation only Fix from $1,9502025-01-15 HIGH 7.3 CVE-2025-21405 Visual Studio Elevation of Privilege Vulnerability Visual Studio 2022 17.12.4+ Fix from $1,9502025-01-14 MEDIUM 5.5 CVE-2025-21340 Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability Windows 10 1809 10.0.17763.6775 / 10.0.19044.5371+ Fix from $1,6002025-01-14 MEDIUM 6.5 CVE-2025-21301 Windows Geolocation Service Information Disclosure Vulnerability Windows 10 1507 10.0.10240.20890 / 10.0.14393.7699+ Fix from $1,6002025-01-14 HIGH 8.8 CVE-2025-21293EPSS 19% Active Directory Domain Services Elevation of Privilege Vulnerability Windows 10 1507 10.0.10240.20890 / 10.0.14393.7699+ Fix from $1,9502025-01-14 MEDIUM 6.1 CVE-2025-21202 Windows Recovery Environment Agent Elevation of Privilege Vulnerability Windows 10 1507 10.0.10240.20890 / 10.0.14393.7699+ Fix from $1,6002025-01-14 CRITICAL 9.8 CVE-2025-0463 A vulnerability was found in Shanghai Lingdang Information Technology Lingdang CRM up to 8.6.0.0. It has been classified as critical. Affected is an … Lingdang Crm Mitigation only Fix from $2,3002025-01-14 HIGH 7.3 CVE-2025-0460 A vulnerability, which was classified as critical, was found in Blog Botz for Journal Theme 1.0 on OpenCart. This affects an unknown part of the file… Mitigation only Fix from $1,9502025-01-14 HIGH 8.8 CVE-2025-0402 A vulnerability classified as critical was found in 1902756969 reggie 1.0. Affected by this vulnerability is the function upload of the file src/main… Reggie Mitigation only Fix from $1,9502025-01-13 MEDIUM 5.3 CVE-2025-0403 A vulnerability, which was classified as problematic, has been found in 1902756969 reggie 1.0. Affected by this issue is some unknown functionality o… Reggie No fix yet Fix from $1,6002025-01-13 HIGH 7.2 CVE-2025-0399 A vulnerability was found in StarSea99 starsea-mall 1.0. It has been declared as critical. This vulnerability affects the function UploadController o… Starsea Mall Mitigation only Fix from $1,9502025-01-12 MEDIUM 6.5 CVE-2025-21380 Improper access control in Azure SaaS Resources allows an authorized attacker to disclose information over a network. Azure Marketplace No fix yet Fix from $1,6002025-01-09 HIGH 7.5 CVE-2024-13240 Improper Access Control vulnerability in Drupal Open Social allows Collect Data from Common Resource Locations.This issue affects Open Social: from 0… Open Social 12.0.5+ Fix from $1,9502025-01-09 HIGH 7.2 CVE-2025-0346 A vulnerability was found in code-projects Content Management System 1.0. It has been classified as critical. This affects an unknown part of the fil… Content Management System No fix yet Fix from $1,9502025-01-09 CRITICAL 9.8 CVE-2025-0341 A vulnerability, which was classified as critical, has been found in CampCodes Computer Laboratory Management System 1.0. Affected by this issue is s… Computer Laboratory Management System No fix yet Fix from $2,3002025-01-09 CRITICAL 9.8 CVE-2025-0335 A vulnerability was found in code-projects Online Bike Rental System 1.0 and classified as critical. Affected by this issue is some unknown functiona… Online Bike Rental System No fix yet Fix from $2,3002025-01-09 HIGH 8.8 CVE-2024-13211 A vulnerability was found in SingMR HouseRent 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file sr… Houserent Mitigation only Fix from $1,9502025-01-09 HIGH 8.8 CVE-2024-13212 A vulnerability classified as critical has been found in SingMR HouseRent 1.0. This affects the function singleUpload/upload of the file src/main/jav… Houserent Mitigation only Fix from $1,9502025-01-09 HIGH 7.2 CVE-2024-13210 A vulnerability was found in donglight bookstore电商书城系统说明 1.0. It has been declared as critical. Affected by this vulnerability is the functio… Bookstore No fix yet Fix from $1,9502025-01-09 HIGH 7.2 CVE-2024-13201 A vulnerability has been found in wander-chu SpringBoot-Blog 1.0 and classified as critical. This vulnerability affects the function upload of the fi… Springboot Blog No fix yet Fix from $1,9502025-01-09 HIGH 7.5 CVE-2024-13200 A vulnerability, which was classified as critical, was found in wander-chu SpringBoot-Blog 1.0. This affects the function preHandle of the file src/m… Springboot Blog No fix yet Fix from $1,9502025-01-09 CRITICAL 9.8 CVE-2024-13191 A vulnerability, which was classified as critical, has been found in ZeroWdd myblog 1.0. This issue affects the function upload of the file src/main/… Myblog No fix yet Fix from $2,3002025-01-08 HIGH 7.5 CVE-2024-40749 Improper Access Controls allows access to protected views. Joomla\! 3.10.20 / 4.4.10+ Fix from $1,9502025-01-07 CRITICAL 9.8 CVE-2024-13145 A vulnerability classified as critical was found in zhenfeng13 My-Blog 1.0. Affected by this vulnerability is the function upload of the file src/mai… My Blog No fix yet Fix from $2,3002025-01-06 CRITICAL 9.8 CVE-2024-13144 A vulnerability classified as critical has been found in zhenfeng13 My-Blog 1.0. Affected is the function uploadFileByEditomd of the file src/main/ja… My Blog No fix yet Fix from $2,3002025-01-06 MEDIUM 5.3 CVE-2025-0224 A vulnerability was found in Provision-ISR SH-4050A-2, SH-4100A-2L(MM), SH-8100A-2L(MM), SH-16200A-2(1U), SH-16200A-5(1U) and NVR5-8200PX up to 20241… Mitigation only Fix from $1,6002025-01-05 HIGH 8.8 CVE-2024-13138 A vulnerability was found in wangl1989 mysiteforme 1.0. It has been declared as critical. This vulnerability affects the function upload of the file … Mysiteforme No fix yet Fix from $1,9502025-01-05