V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

62 / 62
CAPEC: CAPEC-138×Clear all
8.8
CVE-2018-1000861DEB KEV
A code execution vulnerability exists in the Stapler web framework used by Jenkins 2.153 and ea…
2018-01-01KEV
EPSS98.3%
pct 99
7.5
CVE-2014-0114DEB
Apache Commons BeanUtils, as distributed in lib/commons-beanutils-1.8.0.jar in Apache Struts 1.…
2014-01-01
EPSS95.8%
pct 99
9.1
CVE-2024-4990DEB
In yiisoft/yii2 version 2.0.48, the base Component class contains a vulnerability where the `__…
2024-01-01Pre-auth
EPSS85.1%
pct 99
9.8
CVE-2024-0200CVE
An unsafe reflection vulnerability was identified in GitHub Enterprise Server that could lead t…
2024-01-01Pre-auth
EPSS71.7%
pct 99
8.0
CVE-2022-30287DEB
Horde Groupware Webmail Edition through 5.2.22 allows a reflection injection attack through whi…
2022-01-01
EPSS70.3%
pct 99
7.5
CVE-2025-3600CVE
In Progress® Telerik® UI for AJAX, versions 2011.2.712 to 2025.1.218, an unsafe reflection vuln…
2025-01-01Pre-auth
EPSS17.7%
pct 96
7.2
CVE-2018-5511CVE
On F5 BIG-IP 13.1.0-13.1.0.3 or 13.0.0, when authenticated administrative users execute command…
2018-01-01
EPSS14.8%
pct 96
9.8
CVE-2025-53693CVE
Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') vulnerabilit…
2025-01-01Pre-auth
EPSS13.8%
pct 96
2.1
CVE-2014-0119DEB
Apache Tomcat before 6.0.40, 7.x before 7.0.54, and 8.x before 8.0.6 does not properly constrai…
2014-01-01
EPSS7.6%
pct 93
9.0
CVE-2014-9515CVE
Dozer improperly uses a reflection-based approach to type conversion, which might allow remote …
2014-01-01Pre-auth
EPSS5.6%
pct 91
4.9
CVE-2018-1000613DEB
Legion of the Bouncy Castle Legion of the Bouncy Castle Java Cryptography APIs 1.58 up to but n…
2018-01-01
EPSS4.8%
pct 90
2.3
CVE-2022-23744CVE
Check Point Endpoint before version E86.50 failed to protect against specific registry change w…
2022-01-01
EPSS4.3%
pct 89
9.8
CVE-2022-41853DEB
Those using java.sql.Statement or java.sql.PreparedStatement in hsqldb (HyperSQL DataBase) to p…
2022-01-01Pre-auth
EPSS3.5%
pct 87
8.8
CVE-2019-1003041CVE
A sandbox bypass vulnerability in Jenkins Pipeline: Groovy Plugin 2.64 and earlier allows attac…
2019-01-01
EPSS3.3%
pct 87
8.8
CVE-2019-1003040CVE
A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.55 and earlier allows attack…
2019-01-01
EPSS3.3%
pct 87
7.5
CVE-2019-10174CVE
A vulnerability was found in Infinispan such that the invokeAccessibly method from the public c…
2019-01-01
EPSS3.1%
pct 85
9.8
CVE-2021-31522CVE
Kylin can receive user input and load any class through Class.forName(...). This issue affects …
2021-01-01Pre-auth
EPSS2.9%
pct 85
9.8
CVE-2021-28834DEB
Kramdown before 2.3.1 does not restrict Rouge formatters to the Rouge::Formatters namespace, an…
2021-01-01Pre-auth
EPSS2.8%
pct 84
7.8
CVE-2017-16997AST
elf/dl-load.c in the GNU C Library (aka glibc or libc6) 2.19 through 2.26 mishandles RPATH and …
2017-01-01
EPSS2.7%
pct 83
8.8
CVE-2023-33652CVE
Sitecore Experience Platform (XP) v9.3 was discovered to contain an authenticated remote code e…
2023-01-01
EPSS2.5%
pct 82
5.3
CVE-2022-21434ANC
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java S…
2022-01-01Pre-auth
EPSS2.4%
pct 81
9.8
CVE-2023-6943CVE
Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') vulnerabilit…
2023-01-01Pre-auth
EPSS1.8%
pct 76
6.5
CVE-2014-0057CVE
The x_button method in the ServiceController (vmdb/app/controllers/service_controller.rb) in Re…
2014-01-01
EPSS1.6%
pct 72
8.8
CVE-2024-28121CVE
stimulus_reflex is a system to extend the capabilities of both Rails and Stimulus by intercepti…
2024-01-01
EPSS1.6%
pct 71
6.0
CVE-2014-3642CVE
vmdb/app/controllers/application_controller/performance.rb in Red Hat CloudForms 3.1 Management…
2014-01-01
EPSS1.3%
pct 66
8.6
CVE-2026-33157ANC
Craft CMS is a content management system (CMS). From version 5.6.0 to before version 5.9.13, a …
2026-01-01
EPSS1.0%
pct 58
5.6
CVE-2019-3834CVE
It was found that the fix for CVE-2014-0114 had been reverted in JBoss Operations Network 3 (JO…
2019-01-01Pre-auth
EPSS1.0%
pct 58
9.8
CVE-2020-7857CVE
A vulnerability of XPlatform could allow an unauthenticated attacker to execute arbitrary comma…
2020-01-01Pre-auth
EPSS1.0%
pct 58
8.6
CVE-2026-25498ANC
Craft is a platform for creating digital experiences. In versions 4.0.0-RC1 through 4.16.17 and…
2026-01-01
EPSS1.0%
pct 57
9.8
CVE-2024-6096CVE
In Progress® Telerik® Reporting versions prior to 18.1.24.709, a code execution attack is possi…
2024-01-01Pre-auth
EPSS0.9%
pct 53
6.1
CVE-2019-20635CVE
codeBeamer before 9.5.0-RC3 does not properly restrict the ability to execute custom Java code …
2019-01-01Pre-auth
EPSS0.9%
pct 53
9.1
CVE-2025-63690CVE
In pig-mesh Pig versions 3.8.2 and below, when setting up scheduled tasks in the Quartz managem…
2025-01-01
EPSS0.8%
pct 53
7.2
CVE-2024-8015CVE
In Progress Telerik Report Server versions prior to 2024 Q3 (10.2.24.924), a remote code execut…
2024-01-01
EPSS0.8%
pct 52
8.6
CVE-2025-68455ANC
Craft is a platform for creating digital experiences. Versions 5.0.0-RC1 through 5.8.20 and 4.0…
2025-01-01
EPSS0.8%
pct 52
6.5
CVE-2026-46718ANC
Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') vulnerabilit…
2026-01-01Pre-auth
EPSS0.7%
pct 48
9.8
CVE-2026-42027ANC
Arbitrary Class Instantiation via Model Manifest in Apache OpenNLP ExtensionLoader Version…
2026-01-01Pre-auth
EPSS0.7%
pct 47
6.1
CVE-2023-37207AST
A website could have obscured the fullscreen notification by using a URL with a scheme handled …
2023-01-01Pre-auth
EPSS0.7%
pct 47
5.5
CVE-2004-2331CVE
ColdFusion MX 6.1 and 6.1 J2EE allows local users to bypass sandbox security restrictions and o…
2004-01-01
EPSS0.7%
pct 47
8.8
CVE-2023-32217CVE
IdentityIQ 8.3 and all 8.3 patch levels prior to 8.3p3, IdentityIQ 8.2 and all 8.2 patch levels…
2023-01-01
EPSS0.6%
pct 45
8.8
CVE-2024-8014CVE
In Progress Telerik Reporting versions prior to 2024 Q3 (18.2.24.924), a code execution attack …
2024-01-01
EPSS0.6%
pct 44
Select a vulnerability on the left to open the preview.