Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Vulnerability List - Page 51

Found 2768 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2023-5692 WordPress Core <= 6.4.3 - Sensitive Information Exposure via redirect_guess_404_permalink WordPress FoundationWordPress Medium 5.3 2024-04-05 12:52:33 Deep Dive
CVE-2024-27316 Apache HTTP Server: HTTP/2 DoS by memory exhaustion on endless continuation frames Apache Software FoundationApache HTTP Server 高危 -2024-04-04 19:21:42 Deep Dive
CVE-2024-24795 Apache HTTP Server: HTTP Response Splitting in multiple modules Apache Software FoundationApache HTTP Server 中危 -2024-04-04 19:20:49 Deep Dive
CVE-2023-38709 Apache HTTP Server: HTTP response splitting Apache Software FoundationApache HTTP Server 中危 -2024-04-04 19:19:35 Deep Dive
CVE-2024-29008 Apache CloudStack: The extraconfig feature can be abused to load hypervisor resources on a VM instance Apache Software FoundationApache CloudStack 中危 -2024-04-04 07:51:05 Deep Dive
CVE-2024-29007 Apache CloudStack: When downloading templates or ISOs, the management server and SSVM follow HTTP redirects with potentially dangerous consequences Apache Software FoundationApache CloudStack 中危 -2024-04-04 07:49:58 Deep Dive
CVE-2024-29006 Apache CloudStack: x-forwarded-for HTTP header parsed by default Apache Software FoundationApache CloudStack 中危 -2024-04-04 07:48:54 Deep Dive
CVE-2024-29834 Apache Pulsar: Improper Authorization For Namespace and Topic Management Endpoints Apache Software FoundationApache Pulsar Medium 6.4 2024-04-02 19:24:46 Deep Dive
CVE-2024-23537 Apache Fineract: Under certain circumstances, this vulnerability allowed users, without specific permissions, to escalate their privileges to any role. Apache Software FoundationApache Fineract High 8.4 2024-03-29 14:38:06 Deep Dive
CVE-2024-23538 Apache Fineract: Under certain system configurations, the sqlSearch parameter was vulnerable to SQL injection attacks, potentially allowing attackers to manipulate database queries. Apache Software FoundationApache Fineract Critical 9.9 2024-03-29 14:37:40 Deep Dive
CVE-2024-23539 Apache Fineract: Under certain system configurations, the sqlSearch parameter for specific endpoints was vulnerable to SQL injection attacks, potentially allowing attackers to manipulate database queries. Apache Software FoundationApache Fineract High 8.3 2024-03-29 14:36:58 Deep Dive
CVE-2024-2955 Mismatched Memory Management Routines in Wireshark Wireshark FoundationWireshark High 7.8 2024-03-26 20:02:08 Deep Dive
CVE-2024-29735 Apache Airflow: Potentially harmful permission changing by log task handler Apache Software FoundationApache Airflow--2024-03-26 16:52:41 Deep Dive
CVE-2024-2212 Integer wraparounds, under-allocations, and heap buffer overflows in Eclipse ThreadX xQueueCreate() and xQueueCreateSet() Eclipse FoundationThreadX High 7.3 2024-03-26 15:58:27 Deep Dive
CVE-2024-2214 Missing array size check in _Mtxinit() in the Xtensa port Eclipse FoundationThreadX High 7.0 2024-03-26 15:48:36 Deep Dive
CVE-2024-2452 Integer wraparound, under-allocation, and heap buffer overflow in Eclipse ThreadX NetX Duo __portable_aligned_alloc() Eclipse FoundationThreadX High 7.0 2024-03-26 15:43:36 Deep Dive
CVE-2023-6175 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') in Wireshark Wireshark FoundationWireshark High 7.8 2024-03-26 07:30:50 Deep Dive
CVE-2024-27438 Apache Doris: Downloading arbitrary remote jar files resulting in remote command execution Apache Software FoundationApache Doris--2024-03-21 09:39:22 Deep Dive
CVE-2024-26307 Apache Doris: Possible race condition Apache Software FoundationApache Doris--2024-03-21 09:38:19 Deep Dive
CVE-2024-29131 Apache Commons Configuration: StackOverflowError adding property in AbstractListDelimiterHandler.flattenIterator() Apache Software FoundationApache Commons Configuration--2024-03-21 09:07:14 Deep Dive