Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
Assistant
CRITICAL 9.8
CVE-2021-44041
UiPath Assistant 21.4.4 will load and execute attacker controlled data from the file path supplied to the --dev-widget argument of the URI handler fo…
Mitigation only
Fix from $2,300
2021-12-14
Assistant
CRITICAL 9.8
CVE-2021-44042
An issue was discovered in UiPath Assistant 21.4.4. User-controlled data supplied to the --process-start argument of the URI handler for uipath-assis…
Mitigation only
Fix from $2,300
2021-12-14
App Studio
MEDIUM 5.4
CVE-2021-44043
An issue was discovered in UiPath App Studio 21.4.4. There is a persistent XSS vulnerability in the file-upload functionality for uploading icons whe…
Mitigation only
Fix from $1,600
2021-12-14
Orchestrator
MEDIUM 5.5
CVE-2018-19855
UiPath Orchestrator before 2018.3.4 allows CSV Injection, related to the Audit export, Robot log export, and Transaction log export features.
Fix: 2018.3.4+
Fix from $1,600
2019-08-08
Orchestrator
HIGH 8.8
CVE-2018-17305
UiPath Orchestrator through 2018.2.4 allows any authenticated user to change the information of arbitrary users (even administrators) leading to priv…
Fix: after 2018.2.4
Fix from $1,950
2019-04-11