Open Source Vulnerabilities
gleez/cms
Gleez CMS CSRF Allows Adding of Administrator Accounts
gleez/cms
Gleez CMS CSRF Allows Adding of Administrator Accounts
code.gitea.io/gitea, gogs.io/gogs
Gogs and Gitea SSRF Vulnerability
code.gitea.io/gitea/ gogs.io/gogs
Gogs and Gitea SSRF Vulnerability
elefant/cms
Elefant CMS Improper Input Validation
neutron, neutron
OpenStack Neutron Improper Input Validation vulnerability
neutron/ neutron
OpenStack Neutron Improper Input Validation vulnerability
cobbler
Cobbler XSS Vulnerability
villagedefrance/opencart-overclocked
OpenCart-Overclocked Cross-site Scripting Vulnerability
villagedefrance/opencart-overclocked
OpenCart-Overclocked Cross-site Scripting Vulnerability
neutron, neutron
OpenStack Neutron allows remote attackers to bypass an intended DHCP-spoofing protection mechanism
neutron/ neutron
OpenStack Neutron allows remote attackers to bypass an intended DHCP-spoofing protection mechanism
neutron, neutron
OpenStack Neutron allows remote attackers to bypass an intended ICMPv6-spoofing protection mechanism
neutron/ neutron
OpenStack Neutron allows remote attackers to bypass an intended ICMPv6-spoofing protection mechanism
zendframework/zend-mail, zendframework/zend-mail, zendframework/zend-mail, zendframework/zend-mail
zend-mail remote code execution via Sendmail adapter
zendframework/zend-mail/ zendframework/zend-mail/ zendframework/zend-mail/ zendframework/zend-mail
zend-mail remote code execution via Sendmail adapter
tqdm, tqdm
TDQM Arbitrary Code Execution
zendframework/zendframework
Zend Framework Allows SQL Injection
zendframework/zendframework
Zend Framework Allows SQL Injection
zendframework/zendframework, zendframework/zendframework1
Zend Framework Allows SQL Injection
zendframework/zendframework/ zendframework/zendframework1
Zend Framework Allows SQL Injection
org.jboss.fuse:jboss-fuse
Exposure of Sensitive Information to an Unauthorized Actor in JBoss Fuse
org.jboss.fuse:jboss-fuse
Exposure of Sensitive Information to an Unauthorized Actor in JBoss Fuse
cakephp/cakephp, cakephp/cakephp, cakephp/cakephp, cakephp/cakephp, cakephp/cakephp, cakephp/cakephp
CakePHP allows remote attackers to spoof their IP
cakephp/cakephp/ cakephp/cakephp/ cakephp/cakephp/ cakephp/cakephp/ cakephp/cakephp/ cakephp/cakephp
CakePHP allows remote attackers to spoof their IP
elefant/cms
Elefant CMS CSRF Vulnerability
nokogiri
Nokogiri gem, via libxml, is affected by DoS vulnerabilities
nokogiri
Nokogiri gem, via libxml, is affected by DoS vulnerabilities
showdoc/showdoc
Showdoc XSS Vulnerability
gleez/cms
Gleez CMS Vulnerable to Cross-site Scripting in media/imagecache/resize
gleez/cms
Gleez CMS Vulnerable to Cross-site Scripting in media/imagecache/resize
phpmyadmin/phpmyadmin
phpMyAdmin Cross-site Scripting (XSS) in the import dialog
phpmyadmin/phpmyadmin
phpMyAdmin Cross-site Scripting (XSS) in the import dialog
org.apache.tomcat:tomcat, org.apache.tomcat:tomcat, org.apache.tomcat:tomcat
Apache Tomcat affected by infinite loop in Double.parseDouble method in Java Runtime Environment
org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat
Apache Tomcat affected by infinite loop in Double.parseDouble method in Java Runtime Environment
org.bouncycastle:bcprov-jdk15on
Improper Input Validation in Bouncy Castle
org.bouncycastle:bcprov-jdk15on
Improper Input Validation in Bouncy Castle
org.jenkins-ci.main:jenkins-core, org.jenkins-ci.main:jenkins-core
Jenkins allows HTTP Injection and Response Splitting
org.jenkins-ci.main:jenkins-core/ org.jenkins-ci.main:jenkins-core
Jenkins allows HTTP Injection and Response Splitting
org.jenkins-ci.main:jenkins-core, org.jenkins-ci.main:jenkins-core
Jenkins allows Cross-Site Scripting (XSS)
org.jenkins-ci.main:jenkins-core/ org.jenkins-ci.main:jenkins-core
Jenkins allows Cross-Site Scripting (XSS)
org.jenkins-ci.main:jenkins-core, org.jenkins-ci.main:jenkins-core
Jenkins affected by Open Redirect Vulnerability
org.jenkins-ci.main:jenkins-core/ org.jenkins-ci.main:jenkins-core
Jenkins affected by Open Redirect Vulnerability
python-glanceclient
python-glanceclient vulnerable to SSL server spoofing due to unverified X.509 certificate
python-glanceclient
python-glanceclient vulnerable to SSL server spoofing due to unverified X.509 certificate
swift
OpenStack Swift Unchecked user input in XML responses
swift
OpenStack Swift Unchecked user input in XML responses
pymongo
Use of NullPointerException Catch to Detect NULL Pointer Dereference in Pymongo
pymongo
Use of NullPointerException Catch to Detect NULL Pointer Dereference in Pymongo
python-bugzilla
python-bugzilla has improper validation of X.509 certificates
python-bugzilla
python-bugzilla has improper validation of X.509 certificates
phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin
phpMyAdmin micro history Implementation XSS Vulnerability
phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin
phpMyAdmin micro history Implementation XSS Vulnerability
django, django, django, django
Django Allows Open Redirects
django/ django/ django/ django
Django Allows Open Redirects
eyed3
eyeD3 is vulnerable to arbitrary file modification via symlink attack
eyed3
eyeD3 is vulnerable to arbitrary file modification via symlink attack
logilab-common
Creation of Temporary File With Insecure Permissions in logilab-commons
logilab-common
Creation of Temporary File With Insecure Permissions in logilab-commons
django, django, django, django
Django data leakage via querystring manipulation in admin
django/ django/ django/ django
Django data leakage via querystring manipulation in admin
logilab-common
Improper Link Resolution Before File Access in logilab-commons
logilab-common
Improper Link Resolution Before File Access in logilab-commons
django, django, django, django
Django Middleware Enables Session Hijacking
django/ django/ django/ django
Django Middleware Enables Session Hijacking
requests
Exposure of Sensitive Information to an Unauthorized Actor in Requests
requests
Exposure of Sensitive Information to an Unauthorized Actor in Requests
django, django, django
Django Incorrectly Validates URLs
horizon
OpenStack Dashboard (aka Horizon) vulnerable to Cross-site Scripting
horizon
OpenStack Dashboard (aka Horizon) vulnerable to Cross-site Scripting
phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin
phpMyAdmin full path disclosure vulnerability
phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin
phpMyAdmin full path disclosure vulnerability
phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin
phpMyAdmin vulnerable to Cross-site Scripting
phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin
phpMyAdmin vulnerable to Cross-site Scripting
phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin
phpMyAdmin vulnerable to Cross-Site Request Forgery
phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin
phpMyAdmin vulnerable to Cross-Site Request Forgery
phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin
phpMyAdmin vulnerable to Cross-site Scripting
phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin
phpMyAdmin vulnerable to Cross-site Scripting
phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin
phpMyAdmin vulnerable to Cross-site Scripting
phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin
phpMyAdmin vulnerable to Cross-site Scripting
phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin
phpMyAdmin Cross-site scripting (XSS) vulnerability
phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin
phpMyAdmin Cross-site scripting (XSS) vulnerability
phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin
phpMyAdmin Denial Of Service (DOS) attack
phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin
phpMyAdmin Denial Of Service (DOS) attack
mercurial
Mercurial arbitrary code execution vulnerability
mercurial
Mercurial arbitrary code execution vulnerability
mercurial
Mercurial vulnerable to arbitrary code execution via a crafted name when converting a Git repository
mercurial
Mercurial vulnerable to arbitrary code execution via a crafted name when converting a Git repository
mercurial
Mercurial arbitrary code execution via a crafted git ext:: URL
mercurial
Mercurial arbitrary code execution via a crafted git ext:: URL
phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin
phpMyAdmin Unsafe comparison of XSRF/CSRF token
phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin
phpMyAdmin Unsafe comparison of XSRF/CSRF token
