Open Source Vulnerabilities
moin
MoinMoin has improper default configuration
org.apache.activemq:activemq-parent
Cross-site scripting in Apache ActiveMQ
org.apache.activemq:activemq-parent
Cross-site scripting in Apache ActiveMQ
moin, moin
MoinMoin has multiple vulnerabilities related to superuser list, xmlrpc and OpenID configuration
moin/ moin
MoinMoin has multiple vulnerabilities related to superuser list, xmlrpc and OpenID configuration
moin
MoinMoin Exposure of Sensitive Disclosure when GATEWAY_INTERFACE variable is set
moin
MoinMoin Exposure of Sensitive Disclosure when GATEWAY_INTERFACE variable is set
moin, moin
MoinMoin improper sanitizes user profiles
in2code/powermail
TYPO3 powermail Extension Vulnerable to SQL Injection via Unspecified Vectors
in2code/powermail
TYPO3 powermail Extension Vulnerable to SQL Injection via Unspecified Vectors
puppet, puppet
Puppet arbitrary files overwrite via a symlink attack
puppet/ puppet
Puppet arbitrary files overwrite via a symlink attack
ruby-sinatra, ruby-sinatra, ruby-sinatra
ruby-sinatra, ruby-sinatra, ruby-sinatra
mediawiki, mediawiki, mediawiki, mediawiki, mediawiki, mediawiki
mediawiki/ mediawiki/ mediawiki/ mediawiki/ mediawiki/ mediawiki
kernel
CVE-2022-29968 affecting package kernel for versions less than 5.15.37.1-2
kernel
CVE-2022-29968 affecting package kernel for versions less than 5.15.37.1-2
CVE-2022-29968 does not affect BellSoft software
linux-hwe-edge, linux-aws-5.0, linux-aws-5.3, linux-azure, linux-azure-5.3, linux-azure-edge, linux-gcp, linux-gcp-5.3, linux-gke-4.15, linux-hwe, linux-hwe-edge, linux-oem, linux-oracle-5.0, linux-oracle-5.3, linux-aws-5.11, linux-aws-5.8, linux-azure-5.11, linux-azure-5.8, linux-gcp-5.11, linux-gcp-5.8, linux-hwe-5.11, linux-hwe-5.8, linux-intel-5.13, linux-oem-5.10, linux-oem-5.13, linux-oem-5.6, linux-oracle-5.11, linux-oracle-5.8, linux-raspi2, linux-riscv, linux-riscv-5.11, linux-riscv-5.8, linux-oem-5.17
linux-hwe-edge/ linux-aws-5.0/ linux-aws-5.3/ linux-azure/ linux-azure-5.3/ linux-azure-edge/ linux-gcp/ linux-gcp-5.3/ linux-gke-4.15/ linux-hwe/ linux-hwe-edge/ linux-oem/ linux-oracle-5.0/ linux-oracle-5.3/ linux-aws-5.11/ linux-aws-5.8/ linux-azure-5.11/ linux-azure-5.8/ linux-gcp-5.11/ linux-gcp-5.8/ linux-hwe-5.11/ linux-hwe-5.8/ linux-intel-5.13/ linux-oem-5.10/ linux-oem-5.13/ linux-oem-5.6/ linux-oracle-5.11/ linux-oracle-5.8/ linux-raspi2/ linux-riscv/ linux-riscv-5.11/ linux-riscv-5.8/ linux-oem-5.17
zope2
Zope Cross-site scripting (XSS) vulnerability in ZMI pages
zope2
Zope Cross-site scripting (XSS) vulnerability in ZMI pages
feedparser
feedparser Cross-site Scripting vulnerability
smarty/smarty
Smarty Does Not Consider Umask Values When Setting Permissions
smarty/smarty
Smarty Does Not Consider Umask Values When Setting Permissions
pyftpdlib
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') in pyftpdlib
pyftpdlib
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') in pyftpdlib
pyftpdlib
Uncontrolled Resource Consumption in pyftpdlib
pyftpdlib
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') in pyftpdlib
pyftpdlib
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') in pyftpdlib
pyftpdlib
Improper Access Control in pyftpdlib
commerceteam/commerce
Commerce extension for TYPO3 vulnerable to Cross-site Scripting
commerceteam/commerce
Commerce extension for TYPO3 vulnerable to Cross-site Scripting
svewap/a21glossary, wapplersystems/a21glossary
Accessibility Glossary (a21glossary) SQL injection vulnerability
svewap/a21glossary/ wapplersystems/a21glossary
Accessibility Glossary (a21glossary) SQL injection vulnerability
moin, moin
MoinMoin Improper Access Control vulnerability
CuteEditor
CuteSoft CuteEditor Path Traversal vulnerability
CuteEditor
CuteSoft CuteEditor Path Traversal vulnerability
org.mortbay.jetty:jetty, org.mortbay.jetty:jetty
Improper input validation in Mort Bay Jetty
org.mortbay.jetty:jetty/ org.mortbay.jetty:jetty
Improper input validation in Mort Bay Jetty
trac
Trac is vulnerable to improper policy checks and missing 'raw' role check in docutils
trac
Trac is vulnerable to improper policy checks and missing 'raw' role check in docutils
org.apache.derby:derby
Use of Password Hash With Insufficient Computational Effort in Apache Derby
org.apache.derby:derby
Use of Password Hash With Insufficient Computational Effort in Apache Derby
jweiland/kk-downloader
TYPO3 Simple Download-System with Counter and Categories Vulnerable to Information Disclosure
jweiland/kk-downloader
TYPO3 Simple Download-System with Counter and Categories Vulnerable to Information Disclosure
directmailteam/direct-mail
TYPO3 Direct Mail Extension Vulnerable to Cross-Site Scripting (XSS)
directmailteam/direct-mail
TYPO3 Direct Mail Extension Vulnerable to Cross-Site Scripting (XSS)
apache-solr-for-typo3/solr
Apache Solr Search for TYPO3 vulnerable to Cross-site Scripting
apache-solr-for-typo3/solr
Apache Solr Search for TYPO3 vulnerable to Cross-site Scripting
sjbr/sr-freecap
freeCap CAPTCHA extension for TYPO3 has vulnerability in the session handling feature
sjbr/sr-freecap
freeCap CAPTCHA extension for TYPO3 has vulnerability in the session handling feature
phpmyadmin/phpmyadmin, phpmyadmin/phpmyadmin
phpMyAdmin Cross-site Scripting In MySQL Table Name
phpmyadmin/phpmyadmin/ phpmyadmin/phpmyadmin
phpMyAdmin Cross-site Scripting In MySQL Table Name
django, django
Django Regex Algorithmic Complexity Causes Denial of Service
django/ django
Django Regex Algorithmic Complexity Causes Denial of Service
typo3/cms-install, typo3/cms-install, typo3/cms-install, typo3/cms-install
Typo3 API Install Tool vulnerable to Cross-site Scripting
typo3/cms-install/ typo3/cms-install/ typo3/cms-install/ typo3/cms-install
Typo3 API Install Tool vulnerable to Cross-site Scripting
typo3/cms, typo3/cms, typo3/cms, typo3/cms
TYPO3 Install Tool Subcomponent Allows Access Using Only a Password's MD5 Hash as a Credential
typo3/cms/ typo3/cms/ typo3/cms/ typo3/cms
TYPO3 Install Tool Subcomponent Allows Access Using Only a Password's MD5 Hash as a Credential
typo3/cms-core, typo3/cms-core, typo3/cms-core, typo3/cms-core
TYPO3 API function vulnerable to Cross-site Scripting
typo3/cms-core/ typo3/cms-core/ typo3/cms-core/ typo3/cms-core
TYPO3 API function vulnerable to Cross-site Scripting
typo3/cms-backend, typo3/cms-backend, typo3/cms-backend, typo3/cms-backend
TYPO3 Backend Discloses Encryption Key
typo3/cms-backend/ typo3/cms-backend/ typo3/cms-backend/ typo3/cms-backend
TYPO3 Backend Discloses Encryption Key
typo3/cms-backend, typo3/cms-backend, typo3/cms-backend, typo3/cms-backend
TYPO3 Backend Command Injection via Shell Metacharacters in Uploaded File Name
typo3/cms-backend/ typo3/cms-backend/ typo3/cms-backend/ typo3/cms-backend
TYPO3 Backend Command Injection via Shell Metacharacters in Uploaded File Name
typo3/cms-backend, typo3/cms-backend, typo3/cms-backend, typo3/cms-backend
TYPO3 Backend vulnerable to Cross-site Scripting
typo3/cms-backend/ typo3/cms-backend/ typo3/cms-backend/ typo3/cms-backend
TYPO3 Backend vulnerable to Cross-site Scripting
typo3/cms-backend, typo3/cms-backend, typo3/cms-backend, typo3/cms-backend
TYPO3 Backend vulnerable to Frame Hijacking
typo3/cms-backend/ typo3/cms-backend/ typo3/cms-backend/ typo3/cms-backend
TYPO3 Backend vulnerable to Frame Hijacking
org.apache.tomcat:tomcat, org.apache.tomcat:tomcat, org.apache.tomcat:tomcat
Apache Tomcat affected by vulnerability in TLS and SSL protocol
org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat
Apache Tomcat affected by vulnerability in TLS and SSL protocol
buildbot
Buildbot vulnerable to cross-site scripting
buildbot
Buildbot Cross-site scripting (XSS) vulnerability
pygresql, pygresql
PyGreSQL Might Be Vulnerable to Encoding-Based SQL Injection
pygresql/ pygresql
PyGreSQL Might Be Vulnerable to Encoding-Based SQL Injection
org.apache.tomcat:tomcat, org.apache.tomcat:tomcat
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in Apache Tomcat
org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in Apache Tomcat
org.apache.tomcat:tomcat, org.apache.tomcat:tomcat
Improper Authentication in Apache Tomcat
org.apache.tomcat:tomcat/ org.apache.tomcat:tomcat
Improper Authentication in Apache Tomcat
