Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| MINI-j7p4-hqfj-9h35 |
|
MINI-j7p4-hqfj-9h35 |
| MINI-5rmh-vj2v-cmgr |
|
MINI-5rmh-vj2v-cmgr |
| MINI-vp7c-q773-9hph |
|
MINI-vp7c-q773-9hph |
| MINI-68r5-h443-8fxr |
|
MINI-68r5-h443-8fxr |
| MINI-r69q-9984-x8w2 |
|
MINI-r69q-9984-x8w2 |
| MINI-xc3g-7wf4-gh6p |
|
MINI-xc3g-7wf4-gh6p |
| MINI-3x6j-ppcp-mrc8 |
|
MINI-3x6j-ppcp-mrc8 |
| CGA-gmqc-xrj8-f4w9 |
|
CGA-gmqc-xrj8-f4w9 |
| CGA-74xq-rq5m-vpvm |
|
CGA-74xq-rq5m-vpvm |
| CGA-39qj-c9p7-98r4 |
|
CGA-39qj-c9p7-98r4 |
| MINI-822q-h679-qcrh |
|
MINI-822q-h679-qcrh |
| MINI-65q2-hhxp-7w6w |
|
MINI-65q2-hhxp-7w6w |
| MINI-g7wg-gq4x-3qq2 |
|
MINI-g7wg-gq4x-3qq2 |
| MINI-w5vr-fgp3-c5qc |
|
MINI-w5vr-fgp3-c5qc |
| MINI-h4rv-w7rc-56g2 |
|
MINI-h4rv-w7rc-56g2 |
| CGA-7xm3-8724-7gvj |
|
CGA-7xm3-8724-7gvj |
| CGA-69cw-78r8-g3h5 |
|
CGA-69cw-78r8-g3h5 |
| CGA-3cjp-m7r3-hxc4 |
|
CGA-3cjp-m7r3-hxc4 |
| CGA-hmv3-2xp5-8mv8 |
|
CGA-hmv3-2xp5-8mv8 |
| CGA-73g2-frq9-22hx |
|
CGA-73g2-frq9-22hx |
| CGA-x8j2-77hx-4wg4 |
|
CGA-x8j2-77hx-4wg4 |
| CGA-9gcx-r236-858c |
|
CGA-9gcx-r236-858c |
| CGA-72cv-5vw6-pgjf |
|
CGA-72cv-5vw6-pgjf |
| MINI-76p2-695q-hg3p |
|
MINI-76p2-695q-hg3p |
| MINI-wc68-fmfc-h989 |
|
MINI-wc68-fmfc-h989 |
| CVE-2017-18191 |
|
Vulnerability in nova (CVE-2017-18191)
vulnerability in nova (CVE-2017-18191). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `16.1.2` or later.
|
| CVE-2018-12291 |
|
Vulnerability in matrix-synapse (CVE-2018-12291)
vulnerability in matrix-synapse (CVE-2018-12291). Confidential information can be exposed externally. Exploitable via ``on_get_missing_events``. Mitigation: upgrade to `0.31.1` or later.
|
| CVE-2016-9605 |
|
Cross-Site Scripting (XSS) in cobbler (CVE-2016-9605)
cross-site scripting in cobbler (CVE-2016-9605). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-3646 |
|
Information Disclosure in keystone (CVE-2015-3646)
vulnerability in keystone (CVE-2015-3646). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2014.2.4` or later.
|
| CVE-2014-0204 |
|
Privilege Escalation in keystone (CVE-2014-0204)
vulnerability in keystone (CVE-2014-0204). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.0a0` or later.
|
| CVE-2014-3621 |
|
Information Disclosure in keystone (CVE-2014-3621)
vulnerability in keystone (CVE-2014-3621). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.0a0` or later.
|
| CVE-2014-3476 |
|
Privilege Escalation in keystone (CVE-2014-3476)
vulnerability in keystone (CVE-2014-3476). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.0a0` or later.
|
| CVE-2013-2014 |
|
Vulnerability in keystone (CVE-2013-2014)
vulnerability in keystone (CVE-2013-2014). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.0a0` or later.
|
| CVE-2019-2435 |
|
Vulnerability in mysql-connector-python (CVE-2019-2435)
vulnerability in mysql-connector-python (CVE-2019-2435). Confidential information can be exposed externally.
|
| CVE-2014-3474 |
|
Cross-Site Scripting (XSS) in horizon (CVE-2014-3474)
cross-site scripting in horizon (CVE-2014-3474). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.0a0` or later.
|
| CVE-2014-3473 |
|
Cross-Site Scripting (XSS) in horizon (CVE-2014-3473)
cross-site scripting in horizon (CVE-2014-3473). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.0a0` or later.
|
| CVE-2014-3594 |
|
Cross-Site Scripting (XSS) in horizon (CVE-2014-3594)
cross-site scripting in horizon (CVE-2014-3594). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.0a0` or later.
|
| CVE-2022-1592 |
|
SSRF (Server-Side Request Forgery) in scout-browser (CVE-2022-1592)
SSRF in scout-browser (CVE-2022-1592). Confidential information can be exposed externally. Mitigation: upgrade to `4.52` or later.
|
| CVE-2013-0282 |
|
Authentication Bypass in keystone (CVE-2013-0282)
authentication bypass in keystone (CVE-2013-0282). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.0.0a0` or later.
|
| CVE-2016-4428 |
|
Cross-Site Scripting (XSS) in horizon (CVE-2016-4428)
cross-site scripting in horizon (CVE-2016-4428). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `9.1.0` or later.
|
| CVE-2016-4985 |
|
Information Disclosure in ironic (CVE-2016-4985)
vulnerability in ironic (CVE-2016-4985). Confidential information can be exposed externally. Mitigation: upgrade to `5.1.2` or later.
|
| CVE-2000-0483 |
|
Authentication Bypass in zope (CVE-2000-0483)
authentication bypass in zope (CVE-2000-0483). Risk of unauthorized operations or information disclosure.
|
| CVE-2013-2228 |
|
SaltStack RSA Key Generation allows remote users to decrypt communications
SaltStack RSA Key Generation allows remote users to decrypt communications
|
| CVE-2022-1554 |
|
Path Traversal in scout-browser (CVE-2022-1554)
path traversal in scout-browser (CVE-2022-1554). Data can be tampered with by attackers. Exploitable via ``send_file``. Mitigation: upgrade to `4.52` or later.
|
| CVE-2008-4571 |
|
Cross-Site Scripting (XSS) in plone (CVE-2008-4571)
cross-site scripting in plone (CVE-2008-4571). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.0.4` or later.
|
| CVE-2009-2737 |
|
Vulnerability in roundup (CVE-2009-2737)
vulnerability in roundup (CVE-2009-2737). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.4.7` or later.
|
| CVE-2009-0312 |
|
Cross-Site Scripting (XSS) in moin (CVE-2009-0312)
cross-site scripting in moin (CVE-2009-0312). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.8.2` or later.
|
| CVE-2009-0260 |
|
Cross-Site Scripting (XSS) in moin (CVE-2009-0260)
cross-site scripting in moin (CVE-2009-0260). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.8.1` or later.
|
| CVE-2008-2942 |
|
Path Traversal in mercurial (CVE-2008-2942)
path traversal in mercurial (CVE-2008-2942). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.0.2` or later.
|
| CVE-2008-1396 |
|
Vulnerability in plone (CVE-2008-1396)
vulnerability in plone (CVE-2008-1396). Risk of unauthorized operations or information disclosure.
|