Open Source Vulnerabilities
Improper Validation of Specified Type of Input in GitLab
Improper Control of Generation of Code ('Code Injection') in GitLab
Improper Control of Generation of Code ('Code Injection') in GitLab
Improper Control of Generation of Code ('Code Injection') in GitLab
Improper Control of Generation of Code ('Code Injection') in GitLab
Improper Certificate Validation in GitLab
org.apache.streampark:streampark
Apache StreamPark: Authenticated system users could trigger remote command execution
org.apache.streampark:streampark
Apache StreamPark: Authenticated system users could trigger remote command execution
org.apache.streampark:streampark
Apache StreamPark: Authenticated system users could trigger SQL injection vulnerability
org.apache.streampark:streampark
Apache StreamPark: Authenticated system users could trigger SQL injection vulnerability
Remote Code Execution via insufficiently sanitized call to shell.openExternal
Remote Code Execution via insufficiently sanitized call to shell.openExternal
org.wso2.carbon.commons:org.wso2.carbon.ntask.core, org.wso2.am:wso2am, org.wso2.carbon.registry:org.wso2.carbon.registry.extensions, org.wso2.carbon.event-processing:org.wso2.carbon.event.processor.core, org.wso2.carbon.analytics-common:org.wso2.carbon.event.input.adapter.core, org.wso2.carbon.governance:org.wso2.carbon.governance.common
WSO2 products vulnerable to XML External Entity attack
org.wso2.carbon.commons:org.wso2.carbon.ntask.core/ org.wso2.am:wso2am/ org.wso2.carbon.registry:org.wso2.carbon.registry.extensions/ org.wso2.carbon.event-processing:org.wso2.carbon.event.processor.core/ org.wso2.carbon.analytics-common:org.wso2.carbon.event.input.adapter.core/ org.wso2.carbon.governance:org.wso2.carbon.governance.common
WSO2 products vulnerable to XML External Entity attack
org.wso2.carbon.identity.framework:org.wso2.carbon.identity.application.authentication.framework, org.wso2.identity.apps:authentication-portal
Multiple WSO2 products vulnerable to perform user impersonatoin using JIT provisioning
org.wso2.carbon.identity.framework:org.wso2.carbon.identity.application.authentication.framework/ org.wso2.identity.apps:authentication-portal
Multiple WSO2 products vulnerable to perform user impersonatoin using JIT provisioning
org.wso2.carbon.apimgt:forum
WSO2 API Manager allows attackers to change the API rating
org.wso2.carbon.apimgt:forum
WSO2 API Manager allows attackers to change the API rating
