Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
Mongo Express
MEDIUM 6.1
CVE-2023-52555
In mongo-express 1.0.2, /admin allows CSRF, as demonstrated by deletion of a Collection.
No fix yet
Fix from $1,600
2024-03-01
Mongo Express
HIGH 7.5
CVE-2021-23372
All versions of package mongo-express are vulnerable to Denial of Service (DoS) when exporting an empty collection as CSV, due to an unhandled except…
Mitigation only
Fix from $1,950
2021-04-13