Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.1
CVE-2012-2239
Mahara 1.4.x before 1.4.4 and 1.5.x before 1.5.3 allows remote attackers to read arbitrary files or create TCP connections via an XML external entity…
Debian Linux
1.4.4 / 1.5.3+
HIGH 7.5
CVE-2012-4399EPSS 12%
The Xml class in CakePHP 2.1.x before 2.1.5 and 2.2.x before 2.2.1 allows remote attackers to read arbitrary files via XML data containing external e…
Cakephp
2.1.5 / 2.2.1+
MEDIUM 6.5
CVE-2012-3489
The xml_parse function in the libxml2 support in the core server component in PostgreSQL 8.3 before 8.3.20, 8.4 before 8.4.13, 9.0 before 9.0.9, and …
PostgreSQL
8.3.20 / 8.4.13+
MEDIUM 6.5
CVE-2012-0037EPSS 14%
Redland Raptor (aka libraptor) before 2.0.7, as used by OpenOffice 3.3 and 3.4 Beta, LibreOffice before 3.4.6 and 3.5.x before 3.5.1, and other produ…
Openoffice
Patch available
MEDIUM 6.5
CVE-2011-4107EPSS 13%
The simplexml_load_string function in the XML import plug-in (libraries/import/xml.php) in phpMyAdmin 3.4.x before 3.4.7.1 and 3.3.x before 3.3.10.5 …
Fedora
3.3.10.5 / 3.4.7.1+
HIGH 8.8
CVE-2010-3322
The XML parser in Splunk 4.0.0 through 4.1.4 allows remote authenticated users to obtain sensitive information and gain privileges via an XML Externa…
Splunk
after 4.1.4
HIGH 7.5
CVE-2009-1699EPSS 29%
The XSL stylesheet implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 d…
Safari
4.0+
HIGH 7.5
CVE-2005-1306EPSS 15%
The Adobe Reader control in Adobe Reader and Acrobat 7.0 and 7.0.1 allows remote attackers to determine the existence of files via Javascript contain…
Acrobat
Patch available