Vulnerability index

Browse CVEs

4,179 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Unrestricted File UploadCWE-434 × clear
MEDIUM 5.5 CVE-2024-11404 Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in djang… Mitigation only Fix from $1,6002024-11-20 HIGH 8.8 CVE-2024-51499 MarkUs is a web application for the submission and grading of student assignments. In versions prior to 2.4.8, an arbitrary file write vulnerability … Markus 2.4.8+ Fix from $1,9502024-11-18 HIGH 8.8 CVE-2024-51743 MarkUs is a web application for the submission and grading of student assignments. In versions prior to 2.4.8, an arbitrary file write vulnerability … Markus 2.4.8+ Fix from $1,9502024-11-18 HIGH 8.8 CVE-2024-52429 Unrestricted Upload of File with Dangerous Type vulnerability in AntonHoelstad WP Quick Setup wp-quick-setup allows Upload a Web Shell to a Web Serve… Wp Quick Setup after 2.0 Fix from $1,9502024-11-18 CRITICAL 9.8 CVE-2024-11315 The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of uploaded files. This allows unauthenticated remote attacker… Dvc 6.4+ Fix from $2,3002024-11-18 CRITICAL 9.8 CVE-2024-11313 The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of uploaded files. This allows unauthenticated remote attacker… Dvc 6.4+ Fix from $2,3002024-11-18 CRITICAL 9.8 CVE-2024-11314 The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of uploaded files. This allows unauthenticated remote attacker… Dvc 6.4+ Fix from $2,3002024-11-18 CRITICAL 9.8 CVE-2024-11312 The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of uploaded files. This allows unauthenticated remote attacker… Dvc 6.4+ Fix from $2,3002024-11-18 CRITICAL 9.8 CVE-2024-11311 The DVC from TRCore has a Path Traversal vulnerability and does not restrict the types of uploaded files. This allows unauthenticated remote attacker… Dvc 6.4+ Fix from $2,3002024-11-18 CRITICAL 9.1 CVE-2024-52397 Unrestricted Upload of File with Dangerous Type vulnerability in Davor Zeljkovic Convert Docx2post convert-docx2post allows Upload a Web Shell to a W… Mitigation only Fix from $2,3002024-11-16 CRITICAL 9.9 CVE-2024-52406 Unrestricted Upload of File with Dangerous Type vulnerability in wibergsweb CSV to html csv-to-html allows Upload a Web Shell to a Web Server.This is… Mitigation only Fix from $2,3002024-11-16 CRITICAL 9.9 CVE-2024-52407 Unrestricted Upload of File with Dangerous Type vulnerability in BasePress BasePress Migration Tools basepress-migration-tools allows Upload a Web Sh… Mitigation only Fix from $2,3002024-11-16 CRITICAL 9.9 CVE-2024-52408 Unrestricted Upload of File with Dangerous Type vulnerability in pushassist Push Notifications for WordPress by PushAssist push-notification-for-wp-b… Mitigation only Fix from $2,3002024-11-16 CRITICAL 9.9 CVE-2024-52400 Unrestricted Upload of File with Dangerous Type vulnerability in Subhasis Laha Gallerio gallerio allows Upload a Web Shell to a Web Server.This issue… Mitigation only Fix from $2,3002024-11-16 CRITICAL 9.9 CVE-2024-52403 Unrestricted Upload of File with Dangerous Type vulnerability in Saad Iqbal User Management user-management allows Upload a Web Shell to a Web Server… Mitigation only Fix from $2,3002024-11-16 CRITICAL 9.9 CVE-2024-52404 Unrestricted Upload of File with Dangerous Type vulnerability in bigfiveagency CF7 Reply Manager cf7-reply-manager.This issue affects CF7 Reply Manag… Mitigation only Fix from $2,3002024-11-16 CRITICAL 9.9 CVE-2024-52405 Unrestricted Upload of File with Dangerous Type vulnerability in bikramjoshii B-Banner Slider b-banner-slider allows Upload a Web Shell to a Web Serv… Mitigation only Fix from $2,3002024-11-16 CRITICAL 9.1 CVE-2024-52398 Unrestricted Upload of File with Dangerous Type vulnerability in Halyra CDI collect-and-deliver-interface-for-woocommerce.This issue affects CDI: fro… Mitigation only Fix from $2,3002024-11-16 CRITICAL 9.9 CVE-2024-52399 Unrestricted Upload of File with Dangerous Type vulnerability in Clarisse K. Writer Helper writer-helper allows Upload a Web Shell to a Web Server.Th… Mitigation only Fix from $2,3002024-11-16 CRITICAL 9.8 CVE-2024-8856EPSS 94% The Backup and Staging by WP Time Capsule plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the the… Backup And Staging By Wp Time Capsule 1.22.22+ Fix from $2,3002024-11-16 HIGH 8.8 CVE-2024-9849 The Real3D Flipbook Lite – 3D FlipBook, PDF Viewer, PDF Embedder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file typ… Mitigation only Fix from $1,9502024-11-16 CRITICAL 9.9 CVE-2024-52369 Unrestricted Upload of File with Dangerous Type vulnerability in Optimal Access KBucket kbucket allows Upload a Web Shell to a Web Server.This issue … Mitigation only Fix from $2,3002024-11-14 CRITICAL 9.9 CVE-2024-52370 Unrestricted Upload of File with Dangerous Type vulnerability in Hive Support Hive Support hive-support allows Upload a Web Shell to a Web Server.Thi… Mitigation only Fix from $2,3002024-11-14 CRITICAL 9.9 CVE-2024-52384 Unrestricted Upload of File with Dangerous Type vulnerability in wpmonks Sage AI: Chatbots, OpenAI GPT-4 Bulk Articles, Dalle-3 Image Generation ai-c… Mitigation only Fix from $2,3002024-11-14 CRITICAL 10.0 CVE-2024-52379 Unrestricted Upload of File with Dangerous Type vulnerability in faizalbahasan kineticPay for WooCommerce kineticpay-for-woocommerce allows Upload a … Mitigation only Fix from $2,3002024-11-14 CRITICAL 10.0 CVE-2024-52380 Unrestricted Upload of File with Dangerous Type vulnerability in softpulseinfotech Picsmize picsmize allows Upload a Web Shell to a Web Server.This i… Mitigation only Fix from $2,3002024-11-14 CRITICAL 10.0 CVE-2024-52375 Unrestricted Upload of File with Dangerous Type vulnerability in Arttia Creative Datasets Manager by Arttia Creative datasets-manager-by-arttia-creat… Mitigation only Fix from $2,3002024-11-14 CRITICAL 10.0 CVE-2024-52376 Unrestricted Upload of File with Dangerous Type vulnerability in cmsMinds Boat Rental Plugin for WordPress boat-rental-system allows Upload a Web She… Mitigation only Fix from $2,3002024-11-14 CRITICAL 10.0 CVE-2024-52377 Unrestricted Upload of File with Dangerous Type vulnerability in bdthemes Instant Image Generator ai-image allows Upload a Web Shell to a Web Server.… Mitigation only Fix from $2,3002024-11-14 CRITICAL 10.0 CVE-2024-52374 Unrestricted Upload of File with Dangerous Type vulnerability in DoThatTask Do That Task do-that-task allows Upload a Web Shell to a Web Server.This … Mitigation only Fix from $2,3002024-11-14