Open Source Vulnerabilities
typo3/cms, typo3/cms, typo3/cms
Typo3 Backend XSS Vulnerability
typo3/cms/ typo3/cms/ typo3/cms
Typo3 Backend XSS Vulnerability
typo3/cms, typo3/cms, typo3/cms
Typo3 Backend Configuration XSS Vulnerability
typo3/cms/ typo3/cms/ typo3/cms
Typo3 Backend Configuration XSS Vulnerability
typo3/cms, typo3/cms, typo3/cms
Typo3 API XSS Vulnerability
typo3/cms/ typo3/cms/ typo3/cms
Typo3 API XSS Vulnerability
typo3/cms, typo3/cms, typo3/cms
Typo3 Install Tool XSS Vulnerability
typo3/cms/ typo3/cms/ typo3/cms
Typo3 Install Tool XSS Vulnerability
org.apache.struts:struts2-core
Cross-Site Request Forgery in Apache Struts
org.apache.struts:struts2-core
Cross-Site Request Forgery in Apache Struts
org.apache.struts.xwork:xwork-core
Denial of service in Apache Struts
org.apache.struts.xwork:xwork-core
Denial of service in Apache Struts
swift
OpenStack Object Storage (swift) Code Injection vulnerability
swift
OpenStack Object Storage (swift) Code Injection vulnerability
keystone
OpenStack Keystone does not invalidate existing tokens when granting or revoking roles
keystone
OpenStack Keystone does not invalidate existing tokens when granting or revoking roles
glance
OpenStack Glance arbitrary deletion of non-protected images
glance
OpenStack Glance arbitrary deletion of non-protected images
glance
OpenStack Glance arbitrary deletion of non-protected images
glance
OpenStack Glance arbitrary deletion of non-protected images
keystone
OpenStack Keystone intended authorization restrictions bypass
keystone
OpenStack Keystone intended authorization restrictions bypass
keystone
OpenStack Keystone Insufficient token expiration
org.apache.axis2:axis2, org.apache.axis2:axis2-transport-http
Apache Axis2 has Improper Input Validation
org.apache.axis2:axis2/ org.apache.axis2:axis2-transport-http
Apache Axis2 has Improper Input Validation
org.codehaus.xfire:xfire-core
Improper Input Validation in XFire
org.codehaus.xfire:xfire-core
Improper Input Validation in XFire
tweepy
Tweepy does not verify SSL Certificate
org.apache.tomcat:tomcat, org.apache.tomcat:tomcat, org.apache.tomcat:tomcat
Improper Authentication in Apache Tomcat
org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat
Improper Authentication in Apache Tomcat
b13/seo_basics
Basic SEO Features (seo_basics) extension TYPO3 vulnerable to Cross-site Scripting
b13/seo_basics
Basic SEO Features (seo_basics) extension TYPO3 vulnerable to Cross-site Scripting
org.apache.tomcat:tomcat-catalina, org.apache.tomcat:tomcat-catalina, org.apache.tomcat:tomcat-catalina
Improper Authentication in Apache Tomcat
org.apache.tomcat:tomcat-catalina/ org.apache.tomcat:tomcat-catalina/ org.apache.tomcat:tomcat-catalina
Improper Authentication in Apache Tomcat
yui2
Cross-site scripting in yui 2.4.0
in2code/powermail
powermail extension for TYPO3 has Cross-site Scripting vulnerability
in2code/powermail
powermail extension for TYPO3 has Cross-site Scripting vulnerability
sjbr/sr-feuser-register
Front End User Registration (sr_feuser_register) extension for TYPO3 allows remote attackers to obtain user names, passwords
sjbr/sr-feuser-register
Front End User Registration (sr_feuser_register) extension for TYPO3 allows remote attackers to obtain user names, passwords
roundup
Roundup Cross-site Scripting (XSS) vulnerability
roundup
Roundup Cross-site scripting (XSS) vulnerability
roundup
Roundup Cross-site Scripting (XSS) vulnerability
typo3/cms, typo3/cms, typo3/cms
Typo3 Backend History Module Vulnerable to XSS
typo3/cms/ typo3/cms/ typo3/cms
Typo3 Backend History Module Vulnerable to XSS
typo3/cms, typo3/cms, typo3/cms
Typo3 Backend History Module Vulnerable to SQL Injection
typo3/cms/ typo3/cms/ typo3/cms
Typo3 Backend History Module Vulnerable to SQL Injection
typo3/cms, typo3/cms, typo3/cms
Typo3 Function Menu API XSS Vulnerability
typo3/cms/ typo3/cms/ typo3/cms
Typo3 Function Menu API XSS Vulnerability
typo3/cms, typo3/cms, typo3/cms
Typo3 Backend API XSS Vulnerability
typo3/cms/ typo3/cms/ typo3/cms
Typo3 Backend API XSS Vulnerability
symfony/symfony, symfony/yaml
Symphony Vulnerable to PHP Code Injection via YAML Parsing
symfony/symfony/ symfony/yaml
Symphony Vulnerable to PHP Code Injection via YAML Parsing
symfony/symfony, symfony/symfony, symfony/symfony, symfony/yaml, symfony/yaml, symfony/yaml
Symfony Arbitrary PHP code Execution
symfony/symfony/ symfony/symfony/ symfony/symfony/ symfony/yaml/ symfony/yaml/ symfony/yaml
Symfony Arbitrary PHP code Execution
nova
OpenStack Compute (Nova) Denial of service via a large number of calls to the addFixedIp function
nova
OpenStack Compute (Nova) Denial of service via a large number of calls to the addFixedIp function
glance
OpenStack Glance is vulnerable to Exposure of Sensitive Information
glance
OpenStack Glance is vulnerable to Exposure of Sensitive Information
org.apache.activemq:activemq-client
Improper Neutralization of Input During Web Page Generation in Apache ActiveMQ
org.apache.activemq:activemq-client
Improper Neutralization of Input During Web Page Generation in Apache ActiveMQ
karteek-docsplit
Karteek Docsplit vulnerable to OS Command Injection
karteek-docsplit
Karteek Docsplit vulnerable to OS Command Injection
keystone
OpenStack Identity (Keystone) improper revoking of the authentication token when deleting a user
keystone
OpenStack Identity (Keystone) improper revoking of the authentication token when deleting a user
portage
Gentoo Portage does not verify X.509 certificates from SSL servers
portage
Gentoo Portage does not verify X.509 certificates from SSL servers
org.apache.sling:org.apache.sling.api
Improper Restriction of Operations within the Bounds of a Memory Buffer in Apache Sling
org.apache.sling:org.apache.sling.api
Improper Restriction of Operations within the Bounds of a Memory Buffer in Apache Sling
django
Django cross-site scripting (XSS) vulnerability in the AdminURLFieldWidget widget
django
Django cross-site scripting (XSS) vulnerability in the AdminURLFieldWidget widget
DotNetNuke.Core, DotNetNuke.Core
DotNetNuke (DNN) Cross-site scripting (XSS) vulnerability via the __dnnVariable parameter
DotNetNuke.Core/ DotNetNuke.Core
DotNetNuke (DNN) Cross-site scripting (XSS) vulnerability via the __dnnVariable parameter
georgringer/news
News system (news) extension for TYPO3 vulnerable to SQL Injection
georgringer/news
News system (news) extension for TYPO3 vulnerable to SQL Injection
jambagecom/div2007
Static Methods since 2007 (div2007) extension for TYPO3 vulnerable to Cross-site Scripting
jambagecom/div2007
Static Methods since 2007 (div2007) extension for TYPO3 vulnerable to Cross-site Scripting
bednee/cooluri
CoolURI extension for TYPO3 vulnerable to SQL Injection
bednee/cooluri
CoolURI extension for TYPO3 vulnerable to SQL Injection
sjbr/static-info-tables
Static Info Tables (static_info_tables) extension TYPO3 vulnerable to Cross-site Scripting
sjbr/static-info-tables
Static Info Tables (static_info_tables) extension TYPO3 vulnerable to Cross-site Scripting
org.jenkins-ci.main:jenkins-core
Jenkins allows Cross-Site Scripting (XSS) in User Configuration
org.jenkins-ci.main:jenkins-core
Jenkins allows Cross-Site Scripting (XSS) in User Configuration
typo3/cms-core, typo3/cms-core, typo3/cms-core, typo3/cms-core
TYPO3 Cross-site scripting (XSS) vulnerability in the Extbase Framework
typo3/cms-core/ typo3/cms-core/ typo3/cms-core/ typo3/cms-core
TYPO3 Cross-site scripting (XSS) vulnerability in the Extbase Framework
typo3/cms, typo3/cms, typo3/cms, typo3/cms
TYPO3 Cross-Site Scripting (XSS) vulnerabilities in Content Editing Wizards component
typo3/cms/ typo3/cms/ typo3/cms/ typo3/cms
TYPO3 Cross-Site Scripting (XSS) vulnerabilities in Content Editing Wizards component
neos/flow, neos/flow, typo3/flow, typo3/flow
TYPO3 Flow Cross-site scripting (XSS) vulnerability
neos/flow/ neos/flow/ typo3/flow/ typo3/flow
TYPO3 Flow Cross-site scripting (XSS) vulnerability
typo3/cms-core, typo3/cms-core
TYPO3 Cross-site scripting (XSS) vulnerability in the Backend User Administration Module
typo3/cms-core/ typo3/cms-core
TYPO3 Cross-site scripting (XSS) vulnerability in the Backend User Administration Module
nova
OpenStack Nova Live migration can leak root disk into ephemeral storage
nova
OpenStack Nova Live migration can leak root disk into ephemeral storage
rply
RPLY Predictable Tmpfile Names Allows Cache Spoofing
