Vulnerability index

Browse CVEs

4,179 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Unrestricted File UploadCWE-434 × clear
Unclassified MEDIUM 5.5
CVE-2024-11404

Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in djang…

Mitigation only
Fix from $1,600 2024-11-20
Markus HIGH 8.8
CVE-2024-51499

MarkUs is a web application for the submission and grading of student assignments. In versions prior to 2.4.8, an arbitrary file write vulnerability …

Fix: 2.4.8+
Fix from $1,950 2024-11-18
Markus HIGH 8.8
CVE-2024-51743

MarkUs is a web application for the submission and grading of student assignments. In versions prior to 2.4.8, an arbitrary file write vulnerability …

Fix: 2.4.8+
Fix from $1,950 2024-11-18
Wp Quick Setup HIGH 8.8
CVE-2024-52429

Unrestricted Upload of File with Dangerous Type vulnerability in AntonHoelstad WP Quick Setup wp-quick-setup allows Upload a Web Shell to a Web Serve…

Fix: after 2.0
Fix from $1,950 2024-11-18
Dvc CRITICAL 9.8
CVE-2024-11315

The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of uploaded files. This allows unauthenticated remote attacker…

Fix: 6.4+
Fix from $2,300 2024-11-18
Dvc CRITICAL 9.8
CVE-2024-11313

The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of uploaded files. This allows unauthenticated remote attacker…

Fix: 6.4+
Fix from $2,300 2024-11-18
Dvc CRITICAL 9.8
CVE-2024-11314

The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of uploaded files. This allows unauthenticated remote attacker…

Fix: 6.4+
Fix from $2,300 2024-11-18
Dvc CRITICAL 9.8
CVE-2024-11312

The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of uploaded files. This allows unauthenticated remote attacker…

Fix: 6.4+
Fix from $2,300 2024-11-18
Dvc CRITICAL 9.8
CVE-2024-11311

The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of uploaded files. This allows unauthenticated remote attacker…

Fix: 6.4+
Fix from $2,300 2024-11-18
Unclassified CRITICAL 9.1
CVE-2024-52397

Unrestricted Upload of File with Dangerous Type vulnerability in Davor Zeljkovic Convert Docx2post convert-docx2post allows Upload a Web Shell to a W…

Mitigation only
Fix from $2,300 2024-11-16
Unclassified CRITICAL 9.9
CVE-2024-52406

Unrestricted Upload of File with Dangerous Type vulnerability in wibergsweb CSV to html csv-to-html allows Upload a Web Shell to a Web Server.This is…

Mitigation only
Fix from $2,300 2024-11-16
Unclassified CRITICAL 9.9
CVE-2024-52407

Unrestricted Upload of File with Dangerous Type vulnerability in BasePress BasePress Migration Tools basepress-migration-tools allows Upload a Web Sh…

Mitigation only
Fix from $2,300 2024-11-16
Unclassified CRITICAL 9.9
CVE-2024-52408

Unrestricted Upload of File with Dangerous Type vulnerability in pushassist Push Notifications for WordPress by PushAssist push-notification-for-wp-b…

Mitigation only
Fix from $2,300 2024-11-16
Unclassified CRITICAL 9.9
CVE-2024-52400

Unrestricted Upload of File with Dangerous Type vulnerability in Subhasis Laha Gallerio gallerio allows Upload a Web Shell to a Web Server.This issue…

Mitigation only
Fix from $2,300 2024-11-16
Unclassified CRITICAL 9.9
CVE-2024-52403

Unrestricted Upload of File with Dangerous Type vulnerability in Saad Iqbal User Management user-management allows Upload a Web Shell to a Web Server…

Mitigation only
Fix from $2,300 2024-11-16
Unclassified CRITICAL 9.9
CVE-2024-52404

Unrestricted Upload of File with Dangerous Type vulnerability in bigfiveagency CF7 Reply Manager cf7-reply-manager.This issue affects CF7 Reply Manag…

Mitigation only
Fix from $2,300 2024-11-16
Unclassified CRITICAL 9.9
CVE-2024-52405

Unrestricted Upload of File with Dangerous Type vulnerability in bikramjoshii B-Banner Slider b-banner-slider allows Upload a Web Shell to a Web Serv…

Mitigation only
Fix from $2,300 2024-11-16
Unclassified CRITICAL 9.1
CVE-2024-52398

Unrestricted Upload of File with Dangerous Type vulnerability in Halyra CDI collect-and-deliver-interface-for-woocommerce.This issue affects CDI: fro…

Mitigation only
Fix from $2,300 2024-11-16
Unclassified CRITICAL 9.9
CVE-2024-52399

Unrestricted Upload of File with Dangerous Type vulnerability in Clarisse K. Writer Helper writer-helper allows Upload a Web Shell to a Web Server.Th…

Mitigation only
Fix from $2,300 2024-11-16
Backup And Staging By Wp Time Capsule CRITICAL 9.8
CVE-2024-8856EPSS 94%

The Backup and Staging by WP Time Capsule plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the the…

Fix: 1.22.22+
Fix from $2,300 2024-11-16
Unclassified HIGH 8.8
CVE-2024-9849

The Real3D Flipbook Lite – 3D FlipBook, PDF Viewer, PDF Embedder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file typ…

Mitigation only
Fix from $1,950 2024-11-16
Unclassified CRITICAL 9.9
CVE-2024-52369

Unrestricted Upload of File with Dangerous Type vulnerability in Optimal Access KBucket kbucket allows Upload a Web Shell to a Web Server.This issue …

Mitigation only
Fix from $2,300 2024-11-14
Unclassified CRITICAL 9.9
CVE-2024-52370

Unrestricted Upload of File with Dangerous Type vulnerability in Hive Support Hive Support hive-support allows Upload a Web Shell to a Web Server.Thi…

Mitigation only
Fix from $2,300 2024-11-14
Unclassified CRITICAL 9.9
CVE-2024-52384

Unrestricted Upload of File with Dangerous Type vulnerability in wpmonks Sage AI: Chatbots, OpenAI GPT-4 Bulk Articles, Dalle-3 Image Generation ai-c…

Mitigation only
Fix from $2,300 2024-11-14
Unclassified CRITICAL 10.0
CVE-2024-52379

Unrestricted Upload of File with Dangerous Type vulnerability in faizalbahasan kineticPay for WooCommerce kineticpay-for-woocommerce allows Upload a …

Mitigation only
Fix from $2,300 2024-11-14
Unclassified CRITICAL 10.0
CVE-2024-52380

Unrestricted Upload of File with Dangerous Type vulnerability in softpulseinfotech Picsmize picsmize allows Upload a Web Shell to a Web Server.This i…

Mitigation only
Fix from $2,300 2024-11-14
Unclassified CRITICAL 10.0
CVE-2024-52375

Unrestricted Upload of File with Dangerous Type vulnerability in Arttia Creative Datasets Manager by Arttia Creative datasets-manager-by-arttia-creat…

Mitigation only
Fix from $2,300 2024-11-14
Unclassified CRITICAL 10.0
CVE-2024-52376

Unrestricted Upload of File with Dangerous Type vulnerability in cmsMinds Boat Rental Plugin for WordPress boat-rental-system allows Upload a Web She…

Mitigation only
Fix from $2,300 2024-11-14
Unclassified CRITICAL 10.0
CVE-2024-52377

Unrestricted Upload of File with Dangerous Type vulnerability in bdthemes Instant Image Generator ai-image allows Upload a Web Shell to a Web Server.…

Mitigation only
Fix from $2,300 2024-11-14
Unclassified CRITICAL 10.0
CVE-2024-52374

Unrestricted Upload of File with Dangerous Type vulnerability in DoThatTask Do That Task do-that-task allows Upload a Web Shell to a Web Server.This …

Mitigation only
Fix from $2,300 2024-11-14