Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.5
CVE-2025-47947
ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. Versions up to and including 2.9.8 are…
Modsecurity
2.9.9+
HIGH 7.5
CVE-2025-27110
Libmodsecurity is one component of the ModSecurity v3 project. The library codebase serves as an interface to ModSecurity Connectors taking in web tr…
Modsecurity
No fix yet
HIGH 7.5
CVE-2024-46292
A buffer overflow in modsecurity v3.0.12 allows attackers to cause a Denial of Service (DoS) via a crafted input inserted into the name parameter. NO…
Modsecurity
Mitigation only
CRITICAL 9.8
CVE-2014-2727
The STARTTLS implementation in MailMarshal before 7.2 allows plaintext command injection.
Mailmarshal
7.2+
CRITICAL 9.8
CVE-2017-18001EPSS 14%
Trustwave Secure Web Gateway (SWG) through 11.8.0.27 allows remote attackers to append an arbitrary public key to the device's SSH Authorized Keys da…
Secure Web Gateway
after 11.8.0.27
MEDIUM 5.0
CVE-2013-2765EPSS 14%
The ModSecurity module before 2.7.4 for the Apache HTTP Server allows remote attackers to cause a denial of service (NULL pointer dereference, proces…
Modsecurity
2.7.4+
MEDIUM 5.0
CVE-2011-1906
Trustwave WebDefend Enterprise before 5.0 7.01.903-1.4 stores specific user-account credentials in a MySQL database, which makes it easier for remote…
Webdefend
after 5.0
MEDIUM 5.0
CVE-2011-0756
The application server in Trustwave WebDefend Enterprise before 5.0 uses hardcoded console credentials, which makes it easier for remote attackers to…
Webdefend
after 3.0