Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.4
CVE-2021-4072
elgg is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Elgg
3.3.24+
HIGH 7.5
CVE-2021-3980
elgg is vulnerable to Exposure of Private Personal Information to an Unauthorized Actor
Elgg
3.3.23+
MEDIUM 5.9
CVE-2021-3964
elgg is vulnerable to Authorization Bypass Through User-Controlled Key
Elgg
3.3.22+
CRITICAL 9.8
CVE-2011-2936
Elgg through 1.7.10 has a SQL injection vulnerability
Elgg
after 1.7.10
MEDIUM 6.1
CVE-2011-2935
Elgg through 1.7.10 has XSS
Elgg
after 1.7.10
MEDIUM 6.1
CVE-2019-11016
Elgg before 1.12.18 and 2.3.x before 2.3.11 has an open redirect.
Elgg
1.12.18 / 2.3.11+
MEDIUM 6.8
CVE-2012-6562
engine/lib/users.php in Elgg before 1.8.5 does not properly specify permissions for the useradd action, which allows remote attackers to create arbit…
Elgg
after 1.8.4
MEDIUM 5.0
CVE-2011-3733
Elgg 1.7.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an err…
Elgg
No fix yet