Vulnerability index

Browse CVEs

16 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Unrestricted File UploadCWE-434 × clear
Commerce CRITICAL 9.3
CVE-2026-48356EPSS 28%

Adobe Commerce is affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitrary code execution in the c…

Fix: 1.21.0+
Fix from $2,300 2026-07-14
Coldfusion CRITICAL 10.0
CVE-2026-48276EPSS 5%

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in…

Mitigation only
Fix from $2,300 2026-06-30
Coldfusion CRITICAL 10.0
CVE-2026-48283

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in…

Mitigation only
Fix from $2,300 2026-06-30
Coldfusion CRITICAL 9.1
CVE-2025-61808EPSS 10%

ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could …

Mitigation only
Fix from $2,300 2025-12-10
Framemaker HIGH 7.8
CVE-2024-47423

Adobe Framemaker versions 2020.6, 2022.4 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could resu…

Fix: 2020.7 / 2022.5+
Fix from $1,950 2024-10-09
Incopy HIGH 7.8
CVE-2024-45136

InCopy versions 19.4, 18.5.3 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitr…

Fix: 18.5.4 / 19.5+
Fix from $1,950 2024-10-09
Indesign HIGH 7.8
CVE-2024-45137

InDesign Desktop versions 19.4, 18.5.3 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result…

Fix: 18.5.4 / 19.5+
Fix from $1,950 2024-10-09
Commerce CRITICAL 9.0
CVE-2024-39397

Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnera…

Fix: after 2.4.3
Fix from $2,300 2024-08-14
Commerce HIGH 7.2
CVE-2024-34110

Adobe Commerce versions 2.4.7, 2.4.6-p5, 2.4.5-p7, 2.4.4-p8 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerabil…

Fix: after 1.4.0
Fix from $1,950 2024-06-13
Adobe Commerce HIGH 7.2
CVE-2021-36040

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil…

Fix: after 2.4.2
Fix from $1,950 2021-09-01
Adobe Commerce HIGH 7.2
CVE-2021-36042

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil…

Fix: after 2.4.2
Fix from $1,950 2021-09-01
Coldfusion CRITICAL 9.8
CVE-2019-7838EPSS 17%

ColdFusion versions Update 3 and earlier, Update 10 and earlier, and Update 18 and earlier have a file extension blacklist bypass vulnerability. Succ…

Mitigation only
Fix from $2,300 2019-06-12
Coldfusion CRITICAL 9.8
CVE-2019-7816EPSS 68%

ColdFusion versions Update 2 and earlier, Update 9 and earlier, and Update 17 and earlier have a file upload restriction bypass vulnerability. Succes…

Mitigation only
Fix from $2,300 2019-05-24
Coldfusion CRITICAL 9.8
CVE-2018-15961 KEVEPSS 100%

Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have an unrestricted file upload vulnera…

Mitigation only
Fix from $2,300 2018-09-25
Connect MEDIUM 6.1
CVE-2018-4921

Adobe Connect versions 9.7 and earlier have an exploitable unrestricted SWF file upload vulnerability. Successful exploitation could lead to informat…

Fix: after 9.7
Fix from $1,600 2018-05-19
Experience Manager CRITICAL 9.8
CVE-2017-3108EPSS 9%

Adobe Experience Manager 6.2 and earlier has a malicious file execution vulnerability.

Fix: after 6.2
Fix from $2,300 2017-08-11