Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.5
CVE-2023-29218
The Twitter Recommendation Algorithm through ec83d01 allows attackers to cause a denial of service (reduction of reputation score) by arranging for m…
Recommendation Algorithm
after 2023-03-31
MEDIUM 5.4
CVE-2020-35774EPSS 86%
server/handler/HistogramQueryHandler.scala in Twitter TwitterServer (aka twitter-server) before 20.12.0, in some configurations, allows XSS via the /…
Twitter Server
20.12.0+
MEDIUM 5.8
CVE-2020-5216
In Secure Headers (RubyGem secure_headers), a directive injection vulnerability is present in versions before 3.9.0, 5.2.0, and 6.3.0. If user-suppli…
Secure Headers
3.9.0 / 5.2.0+
MEDIUM 5.8
CVE-2020-5217
In Secure Headers (RubyGem secure_headers), a directive injection vulnerability is present in versions before 3.8.0, 5.1.0, and 6.2.0. If user-suppli…
Secure Headers
3.8.0 / 5.1.0+
HIGH 7.4
CVE-2019-16263
The Twitter Kit framework through 3.4.2 for iOS does not properly validate the api.twitter.com SSL certificate. Although the certificate chain must c…
Twitter Kit
after 3.4.2
MEDIUM 5.4
CVE-2019-5431
This vulnerability was caused by an incomplete fix to CVE-2017-0911. Twitter Kit for iOS versions 3.0 to 3.4.0 is vulnerable to a callback verificati…
Twitter Kit
after 3.4.0
MEDIUM 5.4
CVE-2017-0911
Twitter Kit for iOS versions 3.0 to 3.2.1 is vulnerable to a callback verification flaw in the "Login with Twitter" component allowing an attacker to…
Twitter Kit
after 3.2.1
MEDIUM 5.9
CVE-2016-10511
The Twitter iOS client versions 6.62 and 6.62.1 fail to validate Twitter's server certificates for the /1.1/help/settings.json configuration endpoint…
Twitter
No fix yet
MEDIUM 5.4
CVE-2014-6838
The Groupama toujours la (aka com.groupama.toujoursla) application 1.3.0 for Android does not verify X.509 certificates from SSL servers, which allow…
Groupama Toujours La
Mitigation only