Vulnerability index

Browse CVEs

351 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 8.1 CVE-2026-48440 ColdFusion is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user… Coldfusion No fix yet Fix from $4,9002026-08-11 HIGH 7.7 CVE-2026-48385 ColdFusion is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could resu… Coldfusion No fix yet Fix from $4,9002026-08-11 HIGH 7.5 CVE-2026-48386 ColdFusion is affected by a Use of a Broken or Risky Cryptographic Algorithm vulnerability that could lead to disclosure of sensitive memory. An atta… Coldfusion No fix yet Fix from $4,9002026-08-11 CRITICAL 10.0 CVE-2026-48362 ColdFusion is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could resu… Coldfusion No fix yet Fix from $5,7502026-08-11 MEDIUM 6.5 CVE-2026-48375 ColdFusion is affected by an Incorrect Authorization vulnerability that could result in an application denial-of-service. A low-privileged attacker c… Coldfusion No fix yet Fix from $4,0002026-08-11 MEDIUM 5.4 CVE-2026-48376 is affected by an Improper Encoding or Escaping of Output vulnerability that could result in a Security feature bypass. A low-privileged attacker cou… Coldfusion No fix yet Fix from $4,0002026-08-11 HIGH 8.4 CVE-2026-34635 is affected by a Use of Hard-coded Cryptographic Key vulnerability that could result in a Security feature bypass. A low-privileged attacker could le… Coldfusion No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-25652 is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. A low-privileged attacker could exploit this vulne… Coldfusion No fix yet Fix from $4,9002026-08-11 HIGH 8.7 CVE-2026-21273 is affected by an Improper Input Validation vulnerability that could result in privilege escalation. A low-privileged attacker could exploit this vul… Coldfusion No fix yet Fix from $4,9002026-08-11 HIGH 8.2 CVE-2026-21279 is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerabili… Coldfusion No fix yet Fix from $4,9002026-08-11 MEDIUM 5.4 CVE-2026-21269 is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into v… Coldfusion No fix yet Fix from $4,0002026-08-11 HIGH 8.6 CVE-2026-48388 Adobe Photoshop Installer was affected by an Uncontrolled Search Path Element vulnerability that could have resulted in arbitrary code execution in t… Photoshop Installer No fix yet Fix from $1,9502026-07-28 CRITICAL 9.3 CVE-2026-48325 ColdFusion is affected by a Missing Authentication for Critical Function vulnerability that could result in arbitrary code execution in the context o… Coldfusion Mitigation only Fix from $2,3002026-07-14 CRITICAL 9.1 CVE-2026-48324 ColdFusion is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that could result in … Coldfusion Mitigation only Fix from $2,3002026-07-14 CRITICAL 9.0 CVE-2026-48327 ColdFusion is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. … Coldfusion Mitigation only Fix from $2,3002026-07-14 HIGH 7.7 CVE-2026-48328 ColdFusion is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. A low-privileged attacker could … Coldfusion Mitigation only Fix from $1,9502026-07-14 HIGH 7.7 CVE-2026-48332EPSS 11% ColdFusion is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in a Security feature bypass. A low-privileged attacke… Coldfusion Mitigation only Fix from $1,9502026-07-14 MEDIUM 6.8 CVE-2026-48338 ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to arbitrar… Coldfusion Mitigation only Fix from $1,6002026-07-14 CRITICAL 9.9 CVE-2026-48318EPSS 23% ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to arbitrar… Coldfusion Mitigation only Fix from $2,3002026-07-14 CRITICAL 9.9 CVE-2026-48322 ColdFusion is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability that could result in arbitrary code execution in… Coldfusion Mitigation only Fix from $2,3002026-07-14 CRITICAL 9.6 CVE-2026-48284 ColdFusion is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user… Coldfusion Mitigation only Fix from $2,3002026-07-14 CRITICAL 9.3 CVE-2026-48321 ColdFusion is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could leverage this vulnera… Coldfusion Mitigation only Fix from $2,3002026-07-14 CRITICAL 9.1 CVE-2026-48319EPSS 32% ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitr… Coldfusion Mitigation only Fix from $2,3002026-07-14 HIGH 8.5 CVE-2026-48320EPSS 5% ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scri… Coldfusion Mitigation only Fix from $1,9502026-07-14 HIGH 8.2 CVE-2026-48364 ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code… Coldfusion Mitigation only Fix from $1,9502026-07-13 HIGH 8.2 CVE-2026-48363 ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code… Coldfusion Mitigation only Fix from $1,9502026-07-13 CRITICAL 10.0 CVE-2026-48316 ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execut… Coldfusion Mitigation only Fix from $2,3002026-07-06 CRITICAL 9.3 CVE-2026-48313 ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vul… Coldfusion Mitigation only Fix from $2,3002026-06-30 CRITICAL 9.3 CVE-2026-48315 ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execut… Coldfusion Mitigation only Fix from $2,3002026-06-30 MEDIUM 6.5 CVE-2026-48314 ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vul… Coldfusion Mitigation only Fix from $1,6002026-06-30