Vulnerability index

Browse CVEs

351 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Commerce HIGH 7.5
CVE-2023-38220

Adobe Commerce versions 2.4.7-beta1 (and earlier), 2.4.6-p2 (and earlier), 2.4.5-p4 (and earlier) and 2.4.4-p5 (and earlier) are affected by an Impro…

Mitigation only
Fix from $1,950 2023-10-13
Commerce MEDIUM 6.6
CVE-2023-38221

Adobe Commerce versions 2.4.7-beta1 (and earlier), 2.4.6-p2 (and earlier), 2.4.5-p4 (and earlier) and 2.4.4-p5 (and earlier) are affected by an Impro…

Mitigation only
Fix from $1,600 2023-10-13
Commerce MEDIUM 6.8
CVE-2023-26366

Adobe Commerce versions 2.4.7-beta1 (and earlier), 2.4.6-p2 (and earlier), 2.4.5-p4 (and earlier) and 2.4.4-p5 (and earlier) are affected by a Server…

Mitigation only
Fix from $1,600 2023-10-13
Coldfusion CRITICAL 9.8
CVE-2023-38204EPSS 67%

Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by a Deserialization of Untrusted Data vu…

Mitigation only
Fix from $2,300 2023-09-14
Coldfusion HIGH 7.5
CVE-2023-38205 KEVEPSS 100%

Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by an Improper Access Control vulnerabili…

Mitigation only
Fix from $1,950 2023-09-14
Coldfusion MEDIUM 5.3
CVE-2023-38206

Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by an Improper Access Control vulnerabili…

Mitigation only
Fix from $1,600 2023-09-14
Coldfusion CRITICAL 9.8
CVE-2023-29300 KEVEPSS 100%

Adobe ColdFusion versions 2018u16 (and earlier), 2021u6 (and earlier) and 2023.0.0.330468 (and earlier) are affected by a Deserialization of Untruste…

Mitigation only
Fix from $2,300 2023-07-12
Coldfusion HIGH 7.5
CVE-2023-29298 KEVEPSS 100%

Adobe ColdFusion versions 2018u16 (and earlier), 2021u6 (and earlier) and 2023.0.0.330468 (and earlier) are affected by an Improper Access Control vu…

Mitigation only
Fix from $1,950 2023-07-12
Commerce HIGH 7.2
CVE-2023-29297

Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by a Improper Neutralization of Special E…

Mitigation only
Fix from $1,950 2023-06-15
Commerce HIGH 7.5
CVE-2023-22248

Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an Incorrect Authorization vulnerabili…

Mitigation only
Fix from $1,950 2023-06-15
Commerce MEDIUM 6.5
CVE-2023-29289

Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an XML Injection vulnerability. An att…

Mitigation only
Fix from $1,600 2023-06-15
Commerce MEDIUM 5.3
CVE-2023-29287

Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an Information Exposure vulnerability …

Mitigation only
Fix from $1,600 2023-06-15
Commerce MEDIUM 5.3
CVE-2023-29290

Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an Incorrect Authorization vulnerabili…

Mitigation only
Fix from $1,600 2023-06-15
Coldfusion HIGH 7.5
CVE-2022-42340EPSS 34%

Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by an Improper Input Validation vulnerability that could re…

Mitigation only
Fix from $1,950 2022-10-14
Coldfusion HIGH 7.5
CVE-2022-42341EPSS 36%

Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by an Improper Restriction of XML External Entity Reference…

Mitigation only
Fix from $1,950 2022-10-14
Coldfusion HIGH 7.5
CVE-2022-38422EPSS 44%

Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by an Improper Limitation of a Pathname to a Restricted Dir…

Mitigation only
Fix from $1,950 2022-10-14
Coldfusion HIGH 7.2
CVE-2022-38424EPSS 45%

Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by an Improper Limitation of a Pathname to a Restricted Dir…

Mitigation only
Fix from $1,950 2022-10-14
Coldfusion HIGH 7.8
CVE-2020-10145

The Adobe ColdFusion installer fails to set a secure access-control list (ACL) on the default installation directory, such as C:\ColdFusion2021\. By …

Mitigation only
Fix from $1,950 2021-05-27
Experience Manager Forms Add On MEDIUM 5.8
CVE-2020-24444

AEM Forms SP6 add-on for AEM 6.5.6.0 and Forms add-on package for AEM 6.4 Service Pack 8 Cumulative Fix Pack 2 (6.4.8.2) have a blind Server-Side Req…

Mitigation only
Fix from $1,600 2020-12-10
Download Manager HIGH 7.8
CVE-2020-9688

Adobe Download Manager version 2.0.0.518 have a command injection vulnerability. Successful exploitation could lead to arbitrary code execution.

Mitigation only
Fix from $1,950 2020-07-17
Coldfusion HIGH 7.8
CVE-2020-9672

Adobe ColdFusion 2016 update 15 and earlier versions, and ColdFusion 2018 update 9 and earlier versions have a dll search-order hijacking vulnerabili…

Mitigation only
Fix from $1,950 2020-07-17
Coldfusion HIGH 7.8
CVE-2020-9673

Adobe ColdFusion 2016 update 15 and earlier versions, and ColdFusion 2018 update 9 and earlier versions have a dll search-order hijacking vulnerabili…

Mitigation only
Fix from $1,950 2020-07-17
Coldfusion HIGH 7.8
CVE-2020-3768

ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have a dll search-order hijacking vulnerability. Successful exploitation could lead to privi…

Mitigation only
Fix from $1,950 2020-06-26
Coldfusion MEDIUM 6.5
CVE-2020-3767

ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have an insufficient input validation vulnerability. Successful exploitation could lead to a…

Mitigation only
Fix from $1,600 2020-06-26
Coldfusion MEDIUM 6.5
CVE-2020-3796

ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have an improper access control vulnerability. Successful exploitation could lead to system …

No fix yet
Fix from $1,600 2020-06-26
Coldfusion CRITICAL 9.8
CVE-2020-3794EPSS 7%

ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have a file inclusion vulnerability. Successful exploitation could lead to arbitrary code ex…

Mitigation only
Fix from $2,300 2020-03-25
Coldfusion HIGH 7.5
CVE-2020-3761

ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have a remote file read vulnerability. Successful exploitation could lead to arbitrary file …

Mitigation only
Fix from $1,950 2020-03-25
Coldfusion CRITICAL 9.8
CVE-2019-8256

ColdFusion versions Update 6 and earlier have an insecure inherited permissions of default installation directory vulnerability. Successful exploitat…

Mitigation only
Fix from $2,300 2019-12-19
Experience Manager CRITICAL 9.8
CVE-2019-8088EPSS 6%

Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a command injection vulnerability. Successful exploitation could lead to arbitrary code …

Mitigation only
Fix from $2,300 2019-10-25
Experience Manager HIGH 7.5
CVE-2019-8086EPSS 23%

Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a xml external entity injection vulnerability. Successful exploitation could lead to sen…

Mitigation only
Fix from $1,950 2019-10-25