Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Vitalsesp HIGH 8.8
CVE-2026-4639

Vitals ESP developed by Galaxy Software Services has a Incorrect Authorization vulnerability, allowing authenticated remote attackers to perform cert…

Fix: after 6.3
Fix from $1,950 2026-03-24
Vitalsesp HIGH 7.5
CVE-2026-4640

Vitals ESP developed by Galaxy Software Services has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to execute cer…

Fix: after 6.3
Fix from $1,950 2026-03-24
Vitalsesp MEDIUM 6.5
CVE-2025-14254

Vitals ESP developed by Galaxy Software Services has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL c…

Fix: after 6.3
Fix from $1,600 2025-12-08
Vitalsesp MEDIUM 6.5
CVE-2025-14255

Vitals ESP developed by Galaxy Software Services has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL c…

Fix: after 6.1
Fix from $1,600 2025-12-08
Iota C.ai HIGH 7.2
CVE-2024-52959

A Improper Control of Generation of Code ('Code Injection') vulnerability in plugin management in iota C.ai Conversational Platform from 1.0.0 throug…

Fix: after 2.1.3
Fix from $1,950 2024-11-27
Iota C.ai HIGH 7.2
CVE-2024-52958

A improper verification of cryptographic signature vulnerability in plugin management in iota C.ai Conversational Platform from 1.0.0 through 2.1.3 a…

Fix: after 2.1.3
Fix from $1,950 2024-11-27
Vitals Enterprise Social Platform HIGH 8.8
CVE-2023-41357

Galaxy Software Services Corporation Vitals ESP is an online knowledge base management portal, it has insufficient filtering and validation during fi…

Fix: after 6.1
Fix from $1,950 2023-11-03
Vitals Enterprise Social Platform CRITICAL 9.8
CVE-2023-37291

Galaxy Software Services Vitals ESP is vulnerable to using a hard-coded encryption key. An unauthenticated remote attacker can generate a valid token…

Fix: after 6.2.0
Fix from $2,300 2023-07-21