Vulnerability index

Browse CVEs

4,179 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Unrestricted File UploadCWE-434 × clear
CRITICAL 10.0 CVE-2024-31115 Unrestricted Upload of File with Dangerous Type vulnerability in QuanticaLabs Chauffeur Taxi Booking System for WordPress.This issue affects Chauffeu… Mitigation only Fix from $2,3002024-03-31 CRITICAL 9.1 CVE-2024-31114 Unrestricted Upload of File with Dangerous Type vulnerability in biplob018 Shortcode Addons.This issue affects Shortcode Addons: from n/a through 3.2… Mitigation only Fix from $2,3002024-03-31 CRITICAL 9.9 CVE-2023-46808 An file upload vulnerability in Ivanti ITSM before 2023.4, allows an authenticated remote user to perform file writes to the server. Successful explo… Neurons For Itsm 2023.4+ Fix from $2,3002024-03-31 CRITICAL 9.8 CVE-2024-30510 Unrestricted Upload of File with Dangerous Type vulnerability in Salon Booking System Salon booking system.This issue affects Salon booking system: f… Salon Booking System 9.5.1+ Fix from $2,3002024-03-29 HIGH 8.8 CVE-2024-30500 Unrestricted Upload of File with Dangerous Type vulnerability in CubeWP CubeWP – All-in-One Dynamic Content Framework.This issue affects CubeWP – All… Cubewp 1.1.13+ Fix from $1,9502024-03-29 CRITICAL 9.8 CVE-2024-28713 An issue in Mblog Blog system v.3.5.0 allows an attacker to execute arbitrary code via a crafted file to the theme management feature. Mblog Mitigation only Fix from $2,3002024-03-28 CRITICAL 9.1 CVE-2024-2890 Unrestricted Upload of File with Dangerous Type vulnerability in Tumult Inc. Tumult Hype Animations.This issue affects Tumult Hype Animations: from n… Mitigation only Fix from $2,3002024-03-28 HIGH 7.2 CVE-2024-29100 Unrestricted Upload of File with Dangerous Type vulnerability in Jordy Meow AI Engine: ChatGPT Chatbot.This issue affects AI Engine: ChatGPT Chatbot:… Ai Engine 2.1.5+ Fix from $1,9502024-03-28 HIGH 8.7 CVE-2024-29891 ZITADEL users can upload their own avatar image and various image types are allowed. Due to a missing check, an attacker could upload HTML and preten… Zitadel 2.42.17 / 2.43.11+ Fix from $1,9502024-03-27 CRITICAL 10.0 CVE-2023-49815 Unrestricted Upload of File with Dangerous Type vulnerability in WappPress Team WappPress.This issue affects WappPress: from n/a through 5.0.3. Mitigation only Fix from $2,3002024-03-27 MEDIUM 6.8 CVE-2024-1532 A vulnerability exists in the stb-language file handling that affects the RTU500 series product versions listed below. A malicious actor could enforc… Mitigation only Fix from $1,6002024-03-27 HIGH 8.2 CVE-2024-1531 A vulnerability exists in the stb-language file handling that affects the RTU500 series product versions listed below. A malicious actor could print … Mitigation only Fix from $1,9502024-03-27 CRITICAL 9.8 CVE-2024-2930 A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been declared as critical. Affected by this vulnerability is an unknown fu… Music Gallery Site No fix yet Fix from $2,3002024-03-27 HIGH 8.0 CVE-2023-48275 Unrestricted Upload of File with Dangerous Type vulnerability in Trustindex.Io Widgets for Google Reviews.This issue affects Widgets for Google Revie… Mitigation only Fix from $1,9502024-03-26 HIGH 8.8 CVE-2023-48777 Unrestricted Upload of File with Dangerous Type vulnerability in Elementor.Com Elementor Website Builder.This issue affects Elementor Website Builder… Website Builder 3.18.2+ Fix from $1,9502024-03-26 CRITICAL 9.8 CVE-2023-38388 Unrestricted Upload of File with Dangerous Type vulnerability in Artbees JupiterX Core.This issue affects JupiterX Core: from n/a through 3.3.5. Jupiter X Core 3.3.8+ Fix from $2,3002024-03-26 HIGH 8.8 CVE-2023-39307 Unrestricted Upload of File with Dangerous Type vulnerability in ThemeFusion Avada.This issue affects Avada: from n/a through 7.11.1. Avada 7.11.2+ Fix from $1,9502024-03-26 CRITICAL 9.1 CVE-2023-47842 Unrestricted Upload of File with Dangerous Type vulnerability in Zachary Segal CataBlog.This issue affects CataBlog: from n/a through 1.7.0. Mitigation only Fix from $2,3002024-03-26 HIGH 7.2 CVE-2023-47846 Unrestricted Upload of File with Dangerous Type vulnerability in Terry Lin WP Githuber MD.This issue affects WP Githuber MD: from n/a through 1.16.2. Wp Githuber Md 1.16.3+ Fix from $1,9502024-03-26 HIGH 7.2 CVE-2023-47873 Unrestricted Upload of File with Dangerous Type vulnerability in WEN Solutions WP Child Theme Generator.This issue affects WP Child Theme Generator: … Wp Child Theme Generator 1.1.3+ Fix from $1,9502024-03-26 CRITICAL 9.1 CVE-2023-29386 Unrestricted Upload of File with Dangerous Type vulnerability in Julien Crego Manager for Icomoon.This issue affects Manager for Icomoon: from n/a th… Mitigation only Fix from $2,3002024-03-26 HIGH 7.2 CVE-2023-6091 Unrestricted Upload of File with Dangerous Type vulnerability in mndpsingh287 Theme Editor.This issue affects Theme Editor: from n/a through 2.7.1. Mitigation only Fix from $1,9502024-03-26 CRITICAL 10.0 CVE-2023-23656 Unrestricted Upload of File with Dangerous Type vulnerability in MainWP MainWP File Uploader Extension.This issue affects MainWP File Uploader Extens… Mitigation only Fix from $2,3002024-03-26 HIGH 7.2 CVE-2023-27440 Unrestricted Upload of File with Dangerous Type vulnerability in OnTheGoSystems Types.This issue affects Types: from n/a through 3.4.17. Mitigation only Fix from $1,9502024-03-26 HIGH 7.2 CVE-2024-30231 Unrestricted Upload of File with Dangerous Type vulnerability in WebToffee Product Import Export for WooCommerce.This issue affects Product Import Ex… Product Import Export For Woocommerce after 2.4.1 Fix from $1,9502024-03-26 HIGH 8.8 CVE-2024-29515 File Upload vulnerability in lepton v.7.1.0 allows a remote authenticated attackers to execute arbitrary code via uploading a crafted PHP file to the… Leptoncms No fix yet Fix from $1,9502024-03-25 HIGH 7.2 CVE-2024-28105 phpMyFAQ is an open source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases. The category image upload function in phpmyfaq… Phpmyfaq Patch available Fix from $1,9502024-03-25 MEDIUM 6.3 CVE-2020-36825 ** UNSUPPORTED WHEN ASSIGNED ** ** DISPUTED ** A vulnerability has been found in cyberaz0r WebRAT up to 20191222 and classified as critical. This vul… Patch available Fix from $1,6002024-03-24 CRITICAL 9.8 CVE-2024-2849 A vulnerability classified as critical was found in SourceCodester Simple File Manager 1.0. This vulnerability affects unknown code. The manipulation… Simple File Manager Web App No fix yet Fix from $2,3002024-03-23 MEDIUM 6.5 CVE-2024-29272EPSS 9% Arbitrary File Upload vulnerability in VvvebJs before version 1.7.5, allows unauthenticated remote attackers to execute arbitrary code and obtain sen… Vvvebjs 1.7.5+ Fix from $1,6002024-03-22