Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 5.3
CVE-2023-22858
An Improper Access Control vulnerability in BlogEngine.NET 3.3.8.0, allows unauthenticated visitors to access the files of unpublished blogs.
Blogengine.net
Mitigation only
MEDIUM 5.4
CVE-2023-22856
A stored Cross-site Scripting (XSS) vulnerability in BlogEngine.NET 3.3.8.0, allows injection of arbitrary JavaScript in the security context of a bl…
Blogengine.net
Mitigation only
MEDIUM 5.4
CVE-2023-22857
A stored Cross-site Scripting (XSS) vulnerability in BlogEngine.NET 3.3.8.0, allows injection of arbitrary JavaScript in the security context of a bl…
Blogengine.net
Mitigation only
MEDIUM 6.5
CVE-2022-28921
A Cross-Site Request Forgery (CSRF) vulnerability discovered in BlogEngine.Net v3.3.8.0 allows unauthenticated attackers to read arbitrary files on t…
Blogengine.net
No fix yet
CRITICAL 9.1
CVE-2022-25591
BlogEngine.NET v3.3.8.0 was discovered to contain an arbitrary file deletion vulnerability which allows attackers to delete files within the web serv…
Blogengine.net
No fix yet
CRITICAL 9.8
CVE-2018-14485EPSS 16%
BlogEngine.NET 3.3 allows XXE attacks via the POST body to metaweblog.axd.
Blogengine.net
No fix yet