Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2023-35817
DevExpress before 23.1.3 allows AsyncDownloader SSRF.
Devexpress
21.2.12+
MEDIUM 5.3
CVE-2023-35816
DevExpress before 23.1.3 allows arbitrary TypeConverter conversion.
Devexpress
21.2.12+
CRITICAL 9.8
CVE-2023-35814
DevExpress before 23.1.3 does not properly protect XtraReport serialized data in ASP.NET web forms.
Devexpress
21.2.12+
CRITICAL 9.8
CVE-2023-35815
DevExpress before 23.1.3 has a data-source protection mechanism bypass during deserialization on XML data.
Devexpress
21.2.12+
HIGH 7.5
CVE-2022-41479
The DevExpress Resource Handler (ASPxHttpHandlerModule) in DevExpress ASP.NET Web Forms Build v19.2.3 does not verify the referenced objects in the /…
Asp.net Web Forms Controls
No fix yet
HIGH 8.8
CVE-2022-28684
This vulnerability allows remote attackers to execute arbitrary code on affected installations of DevExpress. Authentication is required to exploit t…
Devexpress
18.1.18 / 18.2.17+
HIGH 8.8
CVE-2021-36483
DevExpress.XtraReports.UI through v21.1 allows attackers to execute arbitrary code via insecure deserialization.
Devexpress
after 21.1
MEDIUM 6.4
CVE-2015-4670
Directory traversal vulnerability in the AjaxFileUpload control in DevExpress AJAX Control Toolkit (aka AjaxControlToolkit) before 15.1 allows remote…
Ajax Control Toolkit
after 15.0
MEDIUM 6.5
CVE-2014-2575EPSS 9%
Directory traversal vulnerability in the File Manager component in DevExpress ASPxFileManager Control for ASP.NET WebForms and MVC before 13.1.10 and…
Aspxfilemanager Control For Webforms And Mvc
after 13.1.9