Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Stripe Cli HIGH 7.1
CVE-2024-45401

stripe-cli is a command-line tool for the payment processor Stripe. A vulnerability exists in stripe-cli starting in version 1.11.1 and prior to vers…

Fix: 1.21.3+
Fix from $1,950 2024-09-05
Stripe Payment Pro CRITICAL 9.8
CVE-2023-23315

The PrestaShop e-commerce platform module stripejs contains a Blind SQL injection vulnerability up to version 4.5.5. The method `stripejsValidationMo…

Fix: 4.5.5+
Fix from $2,300 2023-03-01
Smokescreen MEDIUM 6.5
CVE-2022-29188

Smokescreen is an HTTP proxy. The primary use case for Smokescreen is to prevent server-side request forgery (SSRF) attacks in which external attacke…

Fix: 0.0.4+
Fix from $1,600 2022-05-21
Smokescreen MEDIUM 5.3
CVE-2022-24825

Smokescreen is a simple HTTP proxy that fogs over naughty URLs. The primary use case for Smokescreen is to prevent server-side request forgery (SSRF)…

Fix: 0.0.3+
Fix from $1,600 2022-04-19
Stripe Cli HIGH 7.0
CVE-2022-24753

Stripe CLI is a command-line tool for the Stripe eCommerce platform. A vulnerability in Stripe CLI exists on Windows when certain commands are run in…

Fix: 1.7.13+
Fix from $1,950 2022-03-09
Stripe HIGH 7.8
CVE-2021-21420

vscode-stripe is an extension for Visual Studio Code. A vulnerability in Stripe for Visual Studio Code extension exists when it loads an untrusted so…

Fix: 1.7.3+
Fix from $1,950 2021-04-01
Stripe Api HIGH 7.5
CVE-2018-19249

The Stripe API v1 allows remote attackers to bypass intended access restrictions by replaying api.stripe.com /v1/tokens XMLHttpRequest data, parsing …

Mitigation only
Fix from $1,950 2019-01-03