Vulnerabilities (CVE)

Total 88191 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-34751 2024-05-17 N/A 4.4 MEDIUM
Deserialization of Untrusted Data vulnerability in WebToffee Order Export & Order Import for WooCommerce.This issue affects Order Export & Order Import for WooCommerce: from n/a through 2.4.9.
CVE-2024-34805 2024-05-17 N/A 6.5 MEDIUM
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Webvitaly iFrame allows Stored XSS.This issue affects iFrame: from n/a through 5.0.
CVE-2024-34760 2024-05-17 N/A 5.9 MEDIUM
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPBlockart Magazine Blocks allows Stored XSS.This issue affects Magazine Blocks: from n/a through 1.3.6.
CVE-2023-39552 1 Online Security Guards Hiring System Project 1 Online Security Guards Hiring System 2024-02-05 N/A N/A
PHPGurukul Online Security Guards Hiring System v.1.0 is vulnerable to Cross-Site Scripting (XSS).
CVE-2023-4330 1 Broadcom 1 Raid Controller Web Interface 2024-02-05 N/A N/A
Broadcom RAID Controller web interface is vulnerable Denial of Service can be caused by an authenticated user to the REST API Interface
CVE-2023-24367 1 Temenos 1 T24 2024-02-04 N/A N/A
Temenos T24 Release 20 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the routineName parameter at genrequest.jsp.
CVE-2023-36191 1 Sqlite 1 Sqlite 2024-02-04 N/A N/A
sqlite3 v3.40.1 was discovered to contain a segmentation violation at /sqlite3_aflpp/shell.c.
CVE-2023-1103 1 Flatpress 1 Flatpress 2024-02-04 N/A N/A
Cross-site Scripting (XSS) - Stored in GitHub repository flatpressblog/flatpress prior to 1.3.
CVE-2022-2220 1 Redhat 1 Openshift Container Platform 2024-02-04 N/A N/A
OpenShift doesn't properly verify subdomain ownership, which allows route takeover. Once a custom route is created, the user must update the DNS provider by creating a canonical name (CNAME) record (if he likes to expose this route externally). The CNAME record should point the custom domain to the OpenShift router as the alias. In a case that the CNAME is not removed when the route is not in use anymore we are dealing with a dangling route. A malicious actor may take over the route.
CVE-2020-35536 1 Gnu 1 Gcc 2024-02-04 N/A N/A
In gcc, an internal compiler error in match_reload function at lra-constraints.c may cause a crash through a crafted input file.
CVE-2020-19715 2024-02-04 N/A N/A
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-13110 Reason: This candidate is a duplicate of CVE-2019-13110. Notes: All CVE users should reference CVE-2019-13110 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.