Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: web-frameworks Clear
ID Title
CVE-2017-8691 Buffer Overflow in express (CVE-2017-8691)
vulnerability in express (CVE-2017-8691). Successful exploitation can lead to full system takeover.
CVE-2010-2245 XXE (XML External Entity) in apache (CVE-2010-2245)
vulnerability in apache (CVE-2010-2245). Confidential information can be exposed externally.
CVE-2011-4343 Information Disclosure in apache (CVE-2011-4343)
vulnerability in apache (CVE-2011-4343). Confidential information can be exposed externally.
CVE-2012-0880 Vulnerability in c (CVE-2012-0880)
vulnerability in c (CVE-2012-0880). Risk of unauthorized operations or information disclosure.
CVE-2014-9260 Vulnerability in wordpress (CVE-2014-9260)
vulnerability in wordpress (CVE-2014-9260). Successful exploitation can lead to full system takeover.
CVE-2014-9262 Vulnerability in wordpress (CVE-2014-9262)
vulnerability in wordpress (CVE-2014-9262). Confidential information can be exposed externally.
CVE-2017-12651 Cross-Site Request Forgery (CSRF) in wordpress (CVE-2017-12651)
vulnerability in wordpress (CVE-2017-12651). Successful exploitation can lead to full system takeover. Exploitable via `Referer header`.
CVE-2015-7875 Vulnerability in drupal (CVE-2015-7875)
vulnerability in drupal (CVE-2015-7875). Data can be tampered with by attackers.
CVE-2017-9801 Vulnerability in apache (CVE-2017-9801)
vulnerability in apache (CVE-2017-9801). Data can be tampered with by attackers.
CVE-2017-7920 Authentication Bypass in react (CVE-2017-7920)
authentication bypass in react (CVE-2017-7920). Confidential information can be exposed externally.
CVE-2017-11364 Vulnerability in joomla (CVE-2017-11364)
vulnerability in joomla (CVE-2017-11364). Successful exploitation can lead to full system takeover.
CVE-2017-11726 Cross-Site Request Forgery (CSRF) in rails (CVE-2017-11726)
vulnerability in rails (CVE-2017-11726). Successful exploitation can lead to full system takeover.
CVE-2016-0736 Vulnerability in apache (CVE-2016-0736)
vulnerability in apache (CVE-2016-0736). Confidential information can be exposed externally.
CVE-2016-2161 Vulnerability in apache (CVE-2016-2161)
vulnerability in apache (CVE-2016-2161). Risk of unauthorized operations or information disclosure.
CVE-2016-8743 Vulnerability in apache (CVE-2016-8743)
vulnerability in apache (CVE-2016-8743). Data can be tampered with by attackers.
CVE-2017-7659 Vulnerability in apache (CVE-2017-7659)
vulnerability in apache (CVE-2017-7659). Risk of unauthorized operations or information disclosure.
CVE-2017-11658 Path Traversal in wordpress (CVE-2017-11658)
path traversal in wordpress (CVE-2017-11658). Confidential information can be exposed externally.
CVE-2017-9933 Information Disclosure in joomla (CVE-2017-9933)
vulnerability in joomla (CVE-2017-9933). Confidential information can be exposed externally.
CVE-2017-7688 Apache OpenMeetings 1.0.0 updates user password in insecure manner.
Apache OpenMeetings 1.0.0 updates user password in insecure manner.
CVE-2017-7666 Cross-Site Scripting (XSS) in apache (CVE-2017-7666)
cross-site scripting in apache (CVE-2017-7666). Successful exploitation can lead to full system takeover.
CVE-2017-7680 Vulnerability in apache (CVE-2017-7680)
vulnerability in apache (CVE-2017-7680). Data can be tampered with by attackers.
CVE-2017-7681 SQL Injection in apache (CVE-2017-7681)
SQL injection in apache (CVE-2017-7681). Successful exploitation can lead to full system takeover.
CVE-2017-7682 Vulnerability in apache (CVE-2017-7682)
vulnerability in apache (CVE-2017-7682). Data can be tampered with by attackers.
CVE-2017-7683 Information Disclosure in apache (CVE-2017-7683)
vulnerability in apache (CVE-2017-7683). Confidential information can be exposed externally.
CVE-2017-7684 Vulnerability in apache (CVE-2017-7684)
vulnerability in apache (CVE-2017-7684). Risk of unauthorized operations or information disclosure.
CVE-2015-0249 Code Injection in apache (CVE-2015-0249)
code injection in apache (CVE-2015-0249). Successful exploitation can lead to full system takeover.
CVE-2017-9789 Use-After-Free in apache (CVE-2017-9789)
vulnerability in apache (CVE-2017-9789). Risk of unauthorized operations or information disclosure.
CVE-2017-9787 Vulnerability in apache (CVE-2017-9787)
vulnerability in apache (CVE-2017-9787). Risk of unauthorized operations or information disclosure.
CVE-2017-7529 Vulnerability in nginx (CVE-2017-7529)
vulnerability in nginx (CVE-2017-7529). Confidential information can be exposed externally.
CVE-2017-5652 Vulnerability in apache (CVE-2017-5652)
vulnerability in apache (CVE-2017-5652). Confidential information can be exposed externally.
CVE-2017-7670 Vulnerability in apache (CVE-2017-7670)
vulnerability in apache (CVE-2017-7670). Risk of unauthorized operations or information disclosure.
CVE-2017-7660 Authentication Bypass in apache (CVE-2017-7660)
authentication bypass in apache (CVE-2017-7660). Data can be tampered with by attackers.
CVE-2017-7686 Information Disclosure in apache (CVE-2017-7686)
vulnerability in apache (CVE-2017-7686). Confidential information can be exposed externally.
CVE-2017-7668 Vulnerability in apache (CVE-2017-7668)
vulnerability in apache (CVE-2017-7668). Risk of unauthorized operations or information disclosure.
CVE-2017-9429 SQL Injection in wordpress (CVE-2017-9429)
SQL injection in wordpress (CVE-2017-9429). Successful exploitation can lead to full system takeover.
CVE-2017-9603 SQL Injection in wordpress (CVE-2017-9603)
SQL injection in wordpress (CVE-2017-9603). Successful exploitation can lead to full system takeover.
CVE-2017-7667 Vulnerability in apache (CVE-2017-7667)
vulnerability in apache (CVE-2017-7667). Data can be tampered with by attackers.
CVE-2017-9418 SQL Injection in wordpress (CVE-2017-9418)
SQL injection in wordpress (CVE-2017-9418). Successful exploitation can lead to full system takeover.
CVE-2015-3634 Information Disclosure in wordpress (CVE-2015-3634)
vulnerability in wordpress (CVE-2015-3634). Confidential information can be exposed externally.
CVE-2015-5175 Vulnerability in apache (CVE-2015-5175)
vulnerability in apache (CVE-2015-5175). Risk of unauthorized operations or information disclosure.
CVE-2017-5664 Vulnerability in apache (CVE-2017-5664)
vulnerability in apache (CVE-2017-5664). Data can be tampered with by attackers.
CVE-2017-7669 Vulnerability in apache (CVE-2017-7669)
vulnerability in apache (CVE-2017-7669). Successful exploitation can lead to full system takeover.
CVE-2016-3083 Vulnerability in apache (CVE-2016-3083)
vulnerability in apache (CVE-2016-3083). Data can be tampered with by attackers.
CVE-2014-0225 XXE (XML External Entity) in spring (CVE-2014-0225)
vulnerability in spring (CVE-2014-0225). Successful exploitation can lead to full system takeover.
CVE-2016-5007 Vulnerability in spring (CVE-2016-5007)
vulnerability in spring (CVE-2016-5007). Data can be tampered with by attackers.
CVE-2015-4704 Path Traversal in wordpress (CVE-2015-4704)
path traversal in wordpress (CVE-2015-4704). Confidential information can be exposed externally.
CVE-2015-5468 Path Traversal in wordpress (CVE-2015-5468)
path traversal in wordpress (CVE-2015-5468). Confidential information can be exposed externally.
CVE-2015-5469 Path Traversal in wordpress (CVE-2015-5469)
path traversal in wordpress (CVE-2015-5469). Confidential information can be exposed externally.
CVE-2015-5682 Vulnerability in wordpress (CVE-2015-5682)
vulnerability in wordpress (CVE-2015-5682). Data can be tampered with by attackers.
CVE-2015-5401 Vulnerability in express (CVE-2015-5401)
vulnerability in express (CVE-2015-5401). Risk of unauthorized operations or information disclosure.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →