Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2026-4639 Vitals ESP developed by Galaxy Software Services has a Incorrect Authorization vulnerability, allowing authenticated remote attackers to perform cert… Vitalsesp after 6.3 Fix from $1,9502026-03-24 HIGH 7.5 CVE-2026-4640 Vitals ESP developed by Galaxy Software Services has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to execute cer… Vitalsesp after 6.3 Fix from $1,9502026-03-24 MEDIUM 6.5 CVE-2025-14254 Vitals ESP developed by Galaxy Software Services has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL c… Vitalsesp after 6.3 Fix from $1,6002025-12-08 MEDIUM 6.5 CVE-2025-14255 Vitals ESP developed by Galaxy Software Services has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL c… Vitalsesp after 6.1 Fix from $1,6002025-12-08 HIGH 7.2 CVE-2024-52959 A Improper Control of Generation of Code ('Code Injection') vulnerability in plugin management in iota C.ai Conversational Platform from 1.0.0 throug… Iota C.ai after 2.1.3 Fix from $1,9502024-11-27 HIGH 7.2 CVE-2024-52958 A improper verification of cryptographic signature vulnerability in plugin management in iota C.ai Conversational Platform from 1.0.0 through 2.1.3 a… Iota C.ai after 2.1.3 Fix from $1,9502024-11-27 HIGH 8.8 CVE-2023-41357 Galaxy Software Services Corporation Vitals ESP is an online knowledge base management portal, it has insufficient filtering and validation during fi… Vitals Enterprise Social Platform after 6.1 Fix from $1,9502023-11-03 CRITICAL 9.8 CVE-2023-37291 Galaxy Software Services Vitals ESP is vulnerable to using a hard-coded encryption key. An unauthenticated remote attacker can generate a valid token… Vitals Enterprise Social Platform after 6.2.0 Fix from $2,3002023-07-21