Vulnerability index

Browse CVEs

661 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Coldfusion CRITICAL 9.1
CVE-2025-43561EPSS 21%

ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Incorrect Authorization vulnerability that could result in arbitrary code…

Mitigation only
Fix from $2,300 2025-05-13
Coldfusion CRITICAL 9.1
CVE-2025-43562EPSS 45%

ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Co…

Mitigation only
Fix from $2,300 2025-05-13
Coldfusion CRITICAL 9.1
CVE-2025-43563EPSS 15%

ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary file…

Mitigation only
Fix from $2,300 2025-05-13
Coldfusion CRITICAL 9.1
CVE-2025-30281EPSS 20%

ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary code…

Mitigation only
Fix from $2,300 2025-04-08
Coldfusion CRITICAL 9.1
CVE-2025-30282

ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper Authentication vulnerability that could result in arbitrary code…

Mitigation only
Fix from $2,300 2025-04-08
Coldfusion CRITICAL 9.1
CVE-2025-24446

ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary co…

Mitigation only
Fix from $2,300 2025-04-08
Coldfusion CRITICAL 9.1
CVE-2025-24447

ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbit…

Mitigation only
Fix from $2,300 2025-04-08
Commerce CRITICAL 9.1
CVE-2025-24434EPSS 17%

Adobe Commerce versions 2.4.8-beta1, 2.4.7-p3, 2.4.6-p8, 2.4.5-p10, 2.4.4-p11 and earlier are affected by an Incorrect Authorization vulnerability th…

Mitigation only
Fix from $2,300 2025-02-11
Connect CRITICAL 9.3
CVE-2024-54032

Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker…

Fix: 11.4.9 / 12.7+
Fix from $2,300 2024-12-10
Connect CRITICAL 9.3
CVE-2024-54034

Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convi…

Fix: 11.4.9 / 12.7+
Fix from $2,300 2024-12-10
Connect CRITICAL 9.3
CVE-2024-54036

Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker…

Fix: 11.4.9 / 12.7+
Fix from $2,300 2024-12-10
Commerce CRITICAL 9.8
CVE-2024-45115

Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Improper Authentication vulnerability that could resul…

Mitigation only
Fix from $2,300 2024-10-10
Coldfusion CRITICAL 9.8
CVE-2024-41874EPSS 30%

ColdFusion versions 2023.9, 2021.15 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code…

Mitigation only
Fix from $2,300 2024-09-13
Commerce CRITICAL 9.0
CVE-2024-39397

Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnera…

Fix: after 2.4.3
Fix from $2,300 2024-08-14
Framemaker Publishing Server CRITICAL 9.8
CVE-2024-30300

Adobe Framemaker Publishing Server versions 2020.3, 2022.2 and earlier are affected by an Information Exposure vulnerability (CWE-200) that could lea…

Fix: 2020+
Fix from $2,300 2024-06-13
Framemaker Publishing Server CRITICAL 9.8
CVE-2024-30299

Adobe Framemaker Publishing Server versions 2020.3, 2022.2 and earlier are affected by an Improper Authentication vulnerability that could result in …

Fix: 2020+
Fix from $2,300 2024-06-13
Commerce CRITICAL 9.8
CVE-2024-34107

Adobe Commerce versions 2.4.7, 2.4.6-p5, 2.4.5-p7, 2.4.4-p8 and earlier are affected by an Improper Access Control vulnerability that could result in…

Fix: after 1.4.0
Fix from $2,300 2024-06-13
Commerce CRITICAL 9.8
CVE-2024-34102 KEVEPSS 100%

Adobe Commerce versions 2.4.7, 2.4.6-p5, 2.4.5-p7, 2.4.4-p8 and earlier are affected by an Improper Restriction of XML External Entity Reference ('XX…

Fix: 1.5.0+
Fix from $2,300 2024-06-13
Experience Manager CRITICAL 9.8
CVE-2024-26029

Adobe Experience Manager versions 6.5.20 and earlier are affected by an Improper Access Control vulnerability that could result in a Security feature…

Fix: 6.5.21 / 2024.5+
Fix from $2,300 2024-06-13
Commerce CRITICAL 9.0
CVE-2024-20758

Adobe Commerce versions 2.4.6-p4, 2.4.5-p6, 2.4.4-p7, 2.4.7-beta3 and earlier are affected by an Improper Input Validation vulnerability that could r…

Mitigation only
Fix from $2,300 2024-04-10
Commerce CRITICAL 9.1
CVE-2024-20719

Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abus…

Mitigation only
Fix from $2,300 2024-02-15
Commerce CRITICAL 9.1
CVE-2024-20720

Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by an Improper Neutralization of Special Elements used in an OS Command…

Mitigation only
Fix from $2,300 2024-02-15
Framemaker Publishing Server CRITICAL 9.8
CVE-2024-20738

Adobe FrameMaker Publishing Server versions 2022.1 and earlier are affected by an Improper Authentication vulnerability that could result in a Securi…

Fix: 2022+
Fix from $2,300 2024-02-15
Coldfusion CRITICAL 9.8
CVE-2023-44350EPSS 65%

Adobe ColdFusion versions 2023.5 (and earlier) and 2021.11 (and earlier) are affected by an Deserialization of Untrusted Data vulnerability that coul…

Fix: 2021+
Fix from $2,300 2023-11-17
Coldfusion CRITICAL 9.8
CVE-2023-44351EPSS 50%

Adobe ColdFusion versions 2023.5 (and earlier) and 2021.11 (and earlier) are affected by an Deserialization of Untrusted Data vulnerability that coul…

Fix: 2021+
Fix from $2,300 2023-11-17
Coldfusion CRITICAL 9.8
CVE-2023-44353EPSS 80%

Adobe ColdFusion versions 2023.5 (and earlier) and 2021.11 (and earlier) are affected by an Deserialization of Untrusted Data vulnerability that coul…

Fix: 2021+
Fix from $2,300 2023-11-17
Framemaker Publishing Server CRITICAL 9.8
CVE-2023-44324

Adobe FrameMaker Publishing Server versions 2022 and earlier are affected by an Improper Authentication vulnerability that could result in a Security…

Fix: 2022+
Fix from $2,300 2023-11-17
Connect CRITICAL 9.8
CVE-2023-4662

Execution with Unnecessary Privileges vulnerability in Saphira Saphira Connect allows Remote Code Inclusion. This issue affects Saphira Connect: bef…

Fix: 9.0+
Fix from $2,300 2023-09-15
Connect CRITICAL 9.8
CVE-2023-4661

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saphira Saphira Connect allows SQL Injection. …

Fix: 9.0+
Fix from $2,300 2023-09-15
Coldfusion CRITICAL 9.8
CVE-2023-38204EPSS 67%

Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by a Deserialization of Untrusted Data vu…

Mitigation only
Fix from $2,300 2023-09-14