Vulnerability index

Browse CVEs

4,179 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Unrestricted File UploadCWE-434 × clear
Unclassified CRITICAL 10.0
CVE-2024-31115

Unrestricted Upload of File with Dangerous Type vulnerability in QuanticaLabs Chauffeur Taxi Booking System for WordPress.This issue affects Chauffeu…

Mitigation only
Fix from $2,300 2024-03-31
Unclassified CRITICAL 9.1
CVE-2024-31114

Unrestricted Upload of File with Dangerous Type vulnerability in biplob018 Shortcode Addons.This issue affects Shortcode Addons: from n/a through 3.2…

Mitigation only
Fix from $2,300 2024-03-31
Neurons For Itsm CRITICAL 9.9
CVE-2023-46808

An file upload vulnerability in Ivanti ITSM before 2023.4, allows an authenticated remote user to perform file writes to the server. Successful explo…

Fix: 2023.4+
Fix from $2,300 2024-03-31
Salon Booking System CRITICAL 9.8
CVE-2024-30510

Unrestricted Upload of File with Dangerous Type vulnerability in Salon Booking System Salon booking system.This issue affects Salon booking system: f…

Fix: 9.5.1+
Fix from $2,300 2024-03-29
Cubewp HIGH 8.8
CVE-2024-30500

Unrestricted Upload of File with Dangerous Type vulnerability in CubeWP CubeWP – All-in-One Dynamic Content Framework.This issue affects CubeWP – All…

Fix: 1.1.13+
Fix from $1,950 2024-03-29
Mblog CRITICAL 9.8
CVE-2024-28713

An issue in Mblog Blog system v.3.5.0 allows an attacker to execute arbitrary code via a crafted file to the theme management feature.

Mitigation only
Fix from $2,300 2024-03-28
Unclassified CRITICAL 9.1
CVE-2024-2890

Unrestricted Upload of File with Dangerous Type vulnerability in Tumult Inc. Tumult Hype Animations.This issue affects Tumult Hype Animations: from n…

Mitigation only
Fix from $2,300 2024-03-28
Ai Engine HIGH 7.2
CVE-2024-29100

Unrestricted Upload of File with Dangerous Type vulnerability in Jordy Meow AI Engine: ChatGPT Chatbot.This issue affects AI Engine: ChatGPT Chatbot:…

Fix: 2.1.5+
Fix from $1,950 2024-03-28
Zitadel HIGH 8.7
CVE-2024-29891

ZITADEL users can upload their own avatar image and various image types are allowed. Due to a missing check, an attacker could upload HTML and preten…

Fix: 2.42.17 / 2.43.11+
Fix from $1,950 2024-03-27
Unclassified CRITICAL 10.0
CVE-2023-49815

Unrestricted Upload of File with Dangerous Type vulnerability in WappPress Team WappPress.This issue affects WappPress: from n/a through 5.0.3.

Mitigation only
Fix from $2,300 2024-03-27
Unclassified MEDIUM 6.8
CVE-2024-1532

A vulnerability exists in the stb-language file handling that affects the RTU500 series product versions listed below. A malicious actor could enforc…

Mitigation only
Fix from $1,600 2024-03-27
Unclassified HIGH 8.2
CVE-2024-1531

A vulnerability exists in the stb-language file handling that affects the RTU500 series product versions listed below. A malicious actor could print …

Mitigation only
Fix from $1,950 2024-03-27
Music Gallery Site CRITICAL 9.8
CVE-2024-2930

A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been declared as critical. Affected by this vulnerability is an unknown fu…

No fix yet
Fix from $2,300 2024-03-27
Unclassified HIGH 8.0
CVE-2023-48275

Unrestricted Upload of File with Dangerous Type vulnerability in Trustindex.Io Widgets for Google Reviews.This issue affects Widgets for Google Revie…

Mitigation only
Fix from $1,950 2024-03-26
Website Builder HIGH 8.8
CVE-2023-48777

Unrestricted Upload of File with Dangerous Type vulnerability in Elementor.Com Elementor Website Builder.This issue affects Elementor Website Builder…

Fix: 3.18.2+
Fix from $1,950 2024-03-26
Jupiter X Core CRITICAL 9.8
CVE-2023-38388

Unrestricted Upload of File with Dangerous Type vulnerability in Artbees JupiterX Core.This issue affects JupiterX Core: from n/a through 3.3.5.

Fix: 3.3.8+
Fix from $2,300 2024-03-26
Avada HIGH 8.8
CVE-2023-39307

Unrestricted Upload of File with Dangerous Type vulnerability in ThemeFusion Avada.This issue affects Avada: from n/a through 7.11.1.

Fix: 7.11.2+
Fix from $1,950 2024-03-26
Unclassified CRITICAL 9.1
CVE-2023-47842

Unrestricted Upload of File with Dangerous Type vulnerability in Zachary Segal CataBlog.This issue affects CataBlog: from n/a through 1.7.0.

Mitigation only
Fix from $2,300 2024-03-26
Wp Githuber Md HIGH 7.2
CVE-2023-47846

Unrestricted Upload of File with Dangerous Type vulnerability in Terry Lin WP Githuber MD.This issue affects WP Githuber MD: from n/a through 1.16.2.

Fix: 1.16.3+
Fix from $1,950 2024-03-26
Wp Child Theme Generator HIGH 7.2
CVE-2023-47873

Unrestricted Upload of File with Dangerous Type vulnerability in WEN Solutions WP Child Theme Generator.This issue affects WP Child Theme Generator: …

Fix: 1.1.3+
Fix from $1,950 2024-03-26
Unclassified CRITICAL 9.1
CVE-2023-29386

Unrestricted Upload of File with Dangerous Type vulnerability in Julien Crego Manager for Icomoon.This issue affects Manager for Icomoon: from n/a th…

Mitigation only
Fix from $2,300 2024-03-26
Unclassified HIGH 7.2
CVE-2023-6091

Unrestricted Upload of File with Dangerous Type vulnerability in mndpsingh287 Theme Editor.This issue affects Theme Editor: from n/a through 2.7.1.

Mitigation only
Fix from $1,950 2024-03-26
Unclassified CRITICAL 10.0
CVE-2023-23656

Unrestricted Upload of File with Dangerous Type vulnerability in MainWP MainWP File Uploader Extension.This issue affects MainWP File Uploader Extens…

Mitigation only
Fix from $2,300 2024-03-26
Unclassified HIGH 7.2
CVE-2023-27440

Unrestricted Upload of File with Dangerous Type vulnerability in OnTheGoSystems Types.This issue affects Types: from n/a through 3.4.17.

Mitigation only
Fix from $1,950 2024-03-26
Product Import Export For Woocommerce HIGH 7.2
CVE-2024-30231

Unrestricted Upload of File with Dangerous Type vulnerability in WebToffee Product Import Export for WooCommerce.This issue affects Product Import Ex…

Fix: after 2.4.1
Fix from $1,950 2024-03-26
Leptoncms HIGH 8.8
CVE-2024-29515

File Upload vulnerability in lepton v.7.1.0 allows a remote authenticated attackers to execute arbitrary code via uploading a crafted PHP file to the…

No fix yet
Fix from $1,950 2024-03-25
Phpmyfaq HIGH 7.2
CVE-2024-28105

phpMyFAQ is an open source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases. The category image upload function in phpmyfaq…

Patch available
Fix from $1,950 2024-03-25
Unclassified MEDIUM 6.3
CVE-2020-36825

** UNSUPPORTED WHEN ASSIGNED ** ** DISPUTED ** A vulnerability has been found in cyberaz0r WebRAT up to 20191222 and classified as critical. This vul…

Patch available
Fix from $1,600 2024-03-24
Simple File Manager Web App CRITICAL 9.8
CVE-2024-2849

A vulnerability classified as critical was found in SourceCodester Simple File Manager 1.0. This vulnerability affects unknown code. The manipulation…

No fix yet
Fix from $2,300 2024-03-23
Vvvebjs MEDIUM 6.5
CVE-2024-29272EPSS 9%

Arbitrary File Upload vulnerability in VvvebJs before version 1.7.5, allows unauthenticated remote attackers to execute arbitrary code and obtain sen…

Fix: 1.7.5+
Fix from $1,600 2024-03-22