Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2022-25507 Cross-Site Scripting (XSS) in freetakserver-ui (CVE-2022-25507)
cross-site scripting in freetakserver-ui (CVE-2022-25507). Risk of unauthorized operations or information disclosure.
CVE-2022-27193 Vulnerability in cvrf2csaf (CVE-2022-27193)
vulnerability in cvrf2csaf (CVE-2022-27193). Confidential information can be exposed externally. Mitigation: upgrade to `1.0.0rc2` or later.
CVE-2022-0932 saleor Missing Authorization vulnerability
saleor Missing Authorization vulnerability
CVE-2022-0637 Open Redirect in pollbot (CVE-2022-0637)
vulnerability in pollbot (CVE-2022-0637). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.4.6` or later.
CVE-2021-44255 Unrestricted File Upload in motioneye (CVE-2021-44255)
vulnerability in motioneye (CVE-2021-44255). Successful exploitation can lead to full system takeover.
CVE-2021-3654 Open Redirect in nova (CVE-2021-3654)
vulnerability in nova (CVE-2021-3654). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `23.0.3` or later.
CVE-2022-0869 Open Redirect in django-spirit (CVE-2022-0869)
vulnerability in django-spirit (CVE-2022-0869). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.12.3` or later.
CVE-2021-41499 Vulnerability in pyo (CVE-2021-41499)
vulnerability in pyo (CVE-2021-41499). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.0.3` or later.
CVE-2021-44227 Cross-Site Request Forgery (CSRF) in mailman (CVE-2021-44227)
vulnerability in mailman (CVE-2021-44227). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.1.38` or later.
CVE-2021-37941 Privilege Escalation in elastic-apm (CVE-2021-37941)
vulnerability in elastic-apm (CVE-2021-37941). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.27.0` or later.
CVE-2021-4164 calibre-web is vulnerable to Cross-Site Request Forgery (CSRF)
calibre-web is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-4170 Cross-Site Scripting (XSS) in calibreweb (CVE-2021-4170)
cross-site scripting in calibreweb (CVE-2021-4170). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `0.6.15` or later.
CVE-2021-41867 Information Disclosure in onionshare-cli (CVE-2021-41867)
vulnerability in onionshare-cli (CVE-2021-41867). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.4` or later.
CVE-2017-8761 Vulnerability in swift (CVE-2017-8761)
vulnerability in swift (CVE-2017-8761). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.15.2` or later.
CVE-2020-7964 Vulnerability in saleor (CVE-2020-7964)
vulnerability in saleor (CVE-2020-7964). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.9.1` or later.
CVE-2020-13258 Cross-Site Scripting (XSS) in contentful (CVE-2020-13258)
cross-site scripting in contentful (CVE-2020-13258). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.12.4` or later.
CVE-2019-11358 Vulnerability in django (CVE-2019-11358)
vulnerability in django (CVE-2019-11358). Risk of unauthorized operations or information disclosure. Exploitable via ``Object.prototype``. Mitigation: upgrade to `2.1.9, 2.2.2` or later.
CVE-2018-13796 Vulnerability in mailman (CVE-2018-13796)
vulnerability in mailman (CVE-2018-13796). Data can be tampered with by attackers. Mitigation: upgrade to `2.1.28` or later.
CVE-2020-26243 Vulnerability in nanopb (CVE-2020-26243)
vulnerability in nanopb (CVE-2020-26243). Risk of unauthorized operations or information disclosure. Exploitable via ``no_unions``. Mitigation: upgrade to `0.3.9.7, 0.4.4` or later.
CVE-2010-1104 Cross-Site Scripting (XSS) in zope2 (CVE-2010-1104)
cross-site scripting in zope2 (CVE-2010-1104). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.12.3` or later.
MINI-p33q-84gr-j2gr MINI-p33q-84gr-j2gr
MINI-jw2w-56qp-gmqp MINI-jw2w-56qp-gmqp
MINI-mj6x-fjvx-62pg MINI-mj6x-fjvx-62pg
MINI-mprx-vcww-p4cf MINI-mprx-vcww-p4cf
MINI-2wm5-hj8q-rqwg MINI-2wm5-hj8q-rqwg
MINI-h254-qr3f-7q7f MINI-h254-qr3f-7q7f
MINI-3xxc-fppr-h424 MINI-3xxc-fppr-h424
MINI-g76r-vg37-569w MINI-g76r-vg37-569w
MINI-gcw3-34fw-7j42 MINI-gcw3-34fw-7j42
MINI-mcfq-hj35-q39h MINI-mcfq-hj35-q39h
MINI-2hcg-42c6-vvf2 MINI-2hcg-42c6-vvf2
MINI-459g-hpr7-6w5g MINI-459g-hpr7-6w5g
SUSE-SU-2026:2727-1 Vulnerability in gstreamer-plugins-good (SUSE-SU-2026:2727-1)
vulnerability in gstreamer-plugins-good (SUSE-SU-2026:2727-1). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `1.8.3-16.19.1` or later.
MINI-wgm4-pf27-9j8c MINI-wgm4-pf27-9j8c
MINI-q7cw-3g9m-chgv MINI-q7cw-3g9m-chgv
MINI-883g-wxpf-jfwg MINI-883g-wxpf-jfwg
MINI-8322-59jv-q327 MINI-8322-59jv-q327
MINI-vj5g-pvgm-68mf MINI-vj5g-pvgm-68mf
MINI-9j68-h335-hg59 MINI-9j68-h335-hg59
MINI-f6gw-r9qg-q46c MINI-f6gw-r9qg-q46c
MINI-rjgr-6m89-67rr MINI-rjgr-6m89-67rr
MINI-59c8-gm2f-qhgq MINI-59c8-gm2f-qhgq
MINI-2gr4-qrr9-3c65 MINI-2gr4-qrr9-3c65
MINI-64fh-w8j3-6jh3 MINI-64fh-w8j3-6jh3
MINI-j969-qp92-5f4c MINI-j969-qp92-5f4c
MINI-c49x-9fxx-rg6p MINI-c49x-9fxx-rg6p
MINI-5cwm-qphv-7whj MINI-5cwm-qphv-7whj
MINI-263g-46h8-ch4g MINI-263g-46h8-ch4g
MINI-jf54-6p7w-9q8g MINI-jf54-6p7w-9q8g
MINI-xhq2-wh53-w56f MINI-xhq2-wh53-w56f

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →