Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2022-25507 |
|
Cross-Site Scripting (XSS) in freetakserver-ui (CVE-2022-25507)
cross-site scripting in freetakserver-ui (CVE-2022-25507). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-27193 |
|
Vulnerability in cvrf2csaf (CVE-2022-27193)
vulnerability in cvrf2csaf (CVE-2022-27193). Confidential information can be exposed externally. Mitigation: upgrade to `1.0.0rc2` or later.
|
| CVE-2022-0932 |
|
saleor Missing Authorization vulnerability
saleor Missing Authorization vulnerability
|
| CVE-2022-0637 |
|
Open Redirect in pollbot (CVE-2022-0637)
vulnerability in pollbot (CVE-2022-0637). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.4.6` or later.
|
| CVE-2021-44255 |
|
Unrestricted File Upload in motioneye (CVE-2021-44255)
vulnerability in motioneye (CVE-2021-44255). Successful exploitation can lead to full system takeover.
|
| CVE-2021-3654 |
|
Open Redirect in nova (CVE-2021-3654)
vulnerability in nova (CVE-2021-3654). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `23.0.3` or later.
|
| CVE-2022-0869 |
|
Open Redirect in django-spirit (CVE-2022-0869)
vulnerability in django-spirit (CVE-2022-0869). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.12.3` or later.
|
| CVE-2021-41499 |
|
Vulnerability in pyo (CVE-2021-41499)
vulnerability in pyo (CVE-2021-41499). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.0.3` or later.
|
| CVE-2021-44227 |
|
Cross-Site Request Forgery (CSRF) in mailman (CVE-2021-44227)
vulnerability in mailman (CVE-2021-44227). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.1.38` or later.
|
| CVE-2021-37941 |
|
Privilege Escalation in elastic-apm (CVE-2021-37941)
vulnerability in elastic-apm (CVE-2021-37941). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.27.0` or later.
|
| CVE-2021-4164 |
|
calibre-web is vulnerable to Cross-Site Request Forgery (CSRF)
calibre-web is vulnerable to Cross-Site Request Forgery (CSRF)
|
| CVE-2021-4170 |
|
Cross-Site Scripting (XSS) in calibreweb (CVE-2021-4170)
cross-site scripting in calibreweb (CVE-2021-4170). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.6.15` or later.
|
| CVE-2021-41867 |
|
Information Disclosure in onionshare-cli (CVE-2021-41867)
vulnerability in onionshare-cli (CVE-2021-41867). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.4` or later.
|
| CVE-2017-8761 |
|
Vulnerability in swift (CVE-2017-8761)
vulnerability in swift (CVE-2017-8761). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.15.2` or later.
|
| CVE-2020-7964 |
|
Vulnerability in saleor (CVE-2020-7964)
vulnerability in saleor (CVE-2020-7964). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.9.1` or later.
|
| CVE-2020-13258 |
|
Cross-Site Scripting (XSS) in contentful (CVE-2020-13258)
cross-site scripting in contentful (CVE-2020-13258). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.12.4` or later.
|
| CVE-2019-11358 |
|
Vulnerability in django (CVE-2019-11358)
vulnerability in django (CVE-2019-11358). Risk of unauthorized operations or information disclosure. Exploitable via ``Object.prototype``. Mitigation: upgrade to `2.1.9, 2.2.2` or later.
|
| CVE-2018-13796 |
|
Vulnerability in mailman (CVE-2018-13796)
vulnerability in mailman (CVE-2018-13796). Data can be tampered with by attackers. Mitigation: upgrade to `2.1.28` or later.
|
| CVE-2020-26243 |
|
Vulnerability in nanopb (CVE-2020-26243)
vulnerability in nanopb (CVE-2020-26243). Risk of unauthorized operations or information disclosure. Exploitable via ``no_unions``. Mitigation: upgrade to `0.3.9.7, 0.4.4` or later.
|
| CVE-2010-1104 |
|
Cross-Site Scripting (XSS) in zope2 (CVE-2010-1104)
cross-site scripting in zope2 (CVE-2010-1104). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.12.3` or later.
|
| MINI-p33q-84gr-j2gr |
|
MINI-p33q-84gr-j2gr |
| MINI-jw2w-56qp-gmqp |
|
MINI-jw2w-56qp-gmqp |
| MINI-mj6x-fjvx-62pg |
|
MINI-mj6x-fjvx-62pg |
| MINI-mprx-vcww-p4cf |
|
MINI-mprx-vcww-p4cf |
| MINI-2wm5-hj8q-rqwg |
|
MINI-2wm5-hj8q-rqwg |
| MINI-h254-qr3f-7q7f |
|
MINI-h254-qr3f-7q7f |
| MINI-3xxc-fppr-h424 |
|
MINI-3xxc-fppr-h424 |
| MINI-g76r-vg37-569w |
|
MINI-g76r-vg37-569w |
| MINI-gcw3-34fw-7j42 |
|
MINI-gcw3-34fw-7j42 |
| MINI-mcfq-hj35-q39h |
|
MINI-mcfq-hj35-q39h |
| MINI-2hcg-42c6-vvf2 |
|
MINI-2hcg-42c6-vvf2 |
| MINI-459g-hpr7-6w5g |
|
MINI-459g-hpr7-6w5g |
| SUSE-SU-2026:2727-1 |
|
Vulnerability in gstreamer-plugins-good (SUSE-SU-2026:2727-1)
vulnerability in gstreamer-plugins-good (SUSE-SU-2026:2727-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.8.3-16.19.1` or later.
|
| MINI-wgm4-pf27-9j8c |
|
MINI-wgm4-pf27-9j8c |
| MINI-q7cw-3g9m-chgv |
|
MINI-q7cw-3g9m-chgv |
| MINI-883g-wxpf-jfwg |
|
MINI-883g-wxpf-jfwg |
| MINI-8322-59jv-q327 |
|
MINI-8322-59jv-q327 |
| MINI-vj5g-pvgm-68mf |
|
MINI-vj5g-pvgm-68mf |
| MINI-9j68-h335-hg59 |
|
MINI-9j68-h335-hg59 |
| MINI-f6gw-r9qg-q46c |
|
MINI-f6gw-r9qg-q46c |
| MINI-rjgr-6m89-67rr |
|
MINI-rjgr-6m89-67rr |
| MINI-59c8-gm2f-qhgq |
|
MINI-59c8-gm2f-qhgq |
| MINI-2gr4-qrr9-3c65 |
|
MINI-2gr4-qrr9-3c65 |
| MINI-64fh-w8j3-6jh3 |
|
MINI-64fh-w8j3-6jh3 |
| MINI-j969-qp92-5f4c |
|
MINI-j969-qp92-5f4c |
| MINI-c49x-9fxx-rg6p |
|
MINI-c49x-9fxx-rg6p |
| MINI-5cwm-qphv-7whj |
|
MINI-5cwm-qphv-7whj |
| MINI-263g-46h8-ch4g |
|
MINI-263g-46h8-ch4g |
| MINI-jf54-6p7w-9q8g |
|
MINI-jf54-6p7w-9q8g |
| MINI-xhq2-wh53-w56f |
|
MINI-xhq2-wh53-w56f |