Vulnerability index

Browse CVEs

6,053 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
E Commerce Php MEDIUM 5.4
CVE-2024-13205

A vulnerability was found in kurniaramadhan E-Commerce-PHP 1.0. It has been rated as problematic. Affected by this issue is some unknown functionalit…

No fix yet
Fix from $1,600 2025-01-09
Mblog MEDIUM 6.1
CVE-2024-13199

A vulnerability classified as problematic was found in langhsu Mblog Blog System 3.5.0. Affected by this vulnerability is an unknown functionality of…

No fix yet
Fix from $1,600 2025-01-09
Bookstore MEDIUM 5.4
CVE-2024-13196

A vulnerability was found in donglight bookstore电商书城系统说明 1.0.0. It has been declared as problematic. This vulnerability affects the function …

No fix yet
Fix from $1,600 2025-01-09
Bookstore MEDIUM 5.4
CVE-2024-13197

A vulnerability was found in donglight bookstore电商书城系统说明 1.0.0. It has been rated as problematic. This issue affects the function updateUser …

No fix yet
Fix from $1,600 2025-01-09
Myblog MEDIUM 5.4
CVE-2024-13192

A vulnerability, which was classified as problematic, was found in ZeroWdd myblog 1.0. Affected is the function update of the file src/main/java/com/…

No fix yet
Fix from $1,600 2025-01-08
Unclassified MEDIUM 5.3
CVE-2024-13187

A vulnerability was found in Kingsoft WPS Office 6.14.0 on macOS. It has been declared as critical. Affected by this vulnerability is an unknown func…

Mitigation only
Fix from $1,600 2025-01-08
Unclassified HIGH 8.6
CVE-2025-22136

Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.217 , Tabby enables several high-risk Electron Fuses, including Ru…

Patch available
Fix from $1,950 2025-01-08
Wordpress File Upload CRITICAL 9.8
CVE-2024-11635

The WordPress File Upload plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 4.24.12 via the 'wfu_ABSP…

Fix: 4.24.15+
Fix from $2,300 2025-01-08
Wordpress File Upload CRITICAL 9.8
CVE-2024-11613

The WordPress File Upload plugin for WordPress is vulnerable to Remote Code Execution, Arbitrary File Read, and Arbitrary File Deletion in all versio…

Fix: 4.25.0+
Fix from $2,300 2025-01-08
Emui HIGH 7.5
CVE-2024-56448

Vulnerability of improper access control in the home screen widget module Impact: Successful exploitation of this vulnerability may affect availabili…

No fix yet
Fix from $1,950 2025-01-08
Wegia CRITICAL 9.9
CVE-2025-22133

WeGIA is a web manager for charitable institutions. Prior to 3.2.8, a critical vulnerability was identified in the /WeGIA/html/socio/sistema/controll…

Fix: 3.2.8+
Fix from $2,300 2025-01-07
Online Book Shop MEDIUM 6.1
CVE-2025-0301

A vulnerability, which was classified as problematic, has been found in code-projects Online Book Shop 1.0. Affected by this issue is some unknown fu…

No fix yet
Fix from $1,600 2025-01-07
Adportal CRITICAL 9.8
CVE-2024-50660

File Upload Bypass was found in AdPortal 3.0.39 allows a remote attacker to execute arbitrary code via the file upload functionality

Mitigation only
Fix from $2,300 2025-01-07
Adportal CRITICAL 9.8
CVE-2024-50658

Server-Side Template Injection (SSTI) was found in AdPortal 3.0.39 allows a remote attacker to execute arbitrary code via the shippingAsBilling and f…

Mitigation only
Fix from $2,300 2025-01-07
Online Book Shop MEDIUM 5.4
CVE-2025-0295

A vulnerability was found in code-projects Online Book Shop 1.0 and classified as problematic. Affected by this issue is some unknown functionality o…

No fix yet
Fix from $1,600 2025-01-07
Unclassified CRITICAL 9.1
CVE-2024-56278

Improper Control of Generation of Code ('Code Injection') vulnerability in Smackcoders Inc., WP Ultimate Exporter wp-ultimate-exporter allows PHP Rem…

Mitigation only
Fix from $2,300 2025-01-07
Unclassified HIGH 8.8
CVE-2024-12471

The Post Saint: ChatGPT, GPT4, DALL-E, Stable Diffusion, Pexels, Dezgo AI Text & Image Generator plugin for WordPress is vulnerable to arbitrary file…

Mitigation only
Fix from $1,950 2025-01-07
Unclassified CRITICAL 9.8
CVE-2024-12252

The SEO LAT Auto Post plugin for WordPress is vulnerable to file overwrite due to a missing capability check on the remote_update AJAX action in all …

Mitigation only
Fix from $2,300 2025-01-07
Unclassified MEDIUM 6.5
CVE-2024-12419

The The Design for Contact Form 7 Style WordPress Plugin – CF7 WOW Styler plugin for WordPress is vulnerable to arbitrary shortcode execution in all …

Mitigation only
Fix from $1,600 2025-01-07
Z Blogphp CRITICAL 9.8
CVE-2024-55529

Z-BlogPHP 1.7.3 is vulnerable to arbitrary code execution via \zb_users\theme\shell\template.

Mitigation only
Fix from $2,300 2025-01-06
Ffmpeg MEDIUM 5.3
CVE-2023-6604

A flaw was found in FFmpeg. This vulnerability allows unexpected additional CPU load and storage consumption, potentially leading to degraded perform…

Fix: after 6.0
Fix from $1,600 2025-01-06
Studentmanager MEDIUM 5.4
CVE-2024-13143

A vulnerability was found in ZeroWdd studentmanager 1.0. It has been rated as problematic. This issue affects the function submitAddPermission of the…

Mitigation only
Fix from $1,600 2025-01-06
Lightpicture MEDIUM 5.4
CVE-2024-13141

A vulnerability classified as problematic was found in osuuu LightPicture up to 1.2.2. This vulnerability affects unknown code of the file /api/uploa…

No fix yet
Fix from $1,600 2025-01-05
Emlog MEDIUM 5.4
CVE-2024-13140

A vulnerability classified as problematic has been found in Emlog Pro up to 2.4.3. Affected is an unknown function of the file /admin/article.php?act…

Fix: after 2.4.3
Fix from $1,600 2025-01-05
Mysiteforme MEDIUM 5.4
CVE-2024-13137

A vulnerability was found in wangl1989 mysiteforme 1.0. It has been classified as problematic. This affects the function RestResponse of the file src…

No fix yet
Fix from $1,600 2025-01-05
Emlog MEDIUM 5.4
CVE-2024-13135

A vulnerability has been found in Emlog Pro 2.4.3 and classified as problematic. Affected by this vulnerability is an unknown functionality of the fi…

No fix yet
Fix from $1,600 2025-01-05
Emlog MEDIUM 5.4
CVE-2024-13132

A vulnerability classified as problematic was found in Emlog Pro up to 2.4.3. This vulnerability affects unknown code of the file /admin/article.php …

Fix: after 2.4.3
Fix from $1,600 2025-01-05
Unclassified HIGH 7.3
CVE-2024-11733

The The WordPress Popular Posts plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 7.1.0. This…

Mitigation only
Fix from $1,950 2025-01-03
Online Shop MEDIUM 6.1
CVE-2025-0175

A vulnerability was found in code-projects Online Shop 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file …

No fix yet
Fix from $1,600 2025-01-03
Android HIGH 8.8
CVE-2024-43767

In prepare_to_draw_into_mask of SkBlurMaskFilterImpl.cpp, there is a possible heap overflow due to improper input validation. This could lead to remo…

Mitigation only
Fix from $1,950 2025-01-03