Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
Elgg
MEDIUM 5.4
CVE-2021-4072
elgg is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Fix: 3.3.24+
Fix from $1,600
2021-12-24
Elgg
HIGH 7.5
CVE-2021-3980
elgg is vulnerable to Exposure of Private Personal Information to an Unauthorized Actor
Fix: 3.3.23+
Fix from $1,950
2021-12-03
Elgg
MEDIUM 5.9
CVE-2021-3964
elgg is vulnerable to Authorization Bypass Through User-Controlled Key
Fix: 3.3.22+
Fix from $1,600
2021-12-01
Elgg
CRITICAL 9.8
CVE-2011-2936
Elgg through 1.7.10 has a SQL injection vulnerability
Fix: after 1.7.10
Fix from $2,300
2019-11-12
Elgg
MEDIUM 6.1
CVE-2011-2935
Elgg through 1.7.10 has XSS
Fix: after 1.7.10
Fix from $1,600
2019-11-12
Elgg
MEDIUM 6.1
CVE-2019-11016
Elgg before 1.12.18 and 2.3.x before 2.3.11 has an open redirect.
Fix: 1.12.18 / 2.3.11+
Fix from $1,600
2019-04-08
Elgg
MEDIUM 6.8
CVE-2012-6562
engine/lib/users.php in Elgg before 1.8.5 does not properly specify permissions for the useradd action, which allows remote attackers to create arbit…
Fix: after 1.8.4
Fix from $1,600
2013-05-23
Elgg
MEDIUM 5.0
CVE-2011-3733
Elgg 1.7.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an err…
No fix yet
Fix from $1,600
2011-09-23