V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

1564 / 1564
Preset: exploit×Has exploit×CAPEC: CAPEC-35×Clear all
9.8
CVE-2017-9841DEB KEV
Util/PHP/eval-stdin.php in PHPUnit before 4.8.28 and 5.x before 5.6.3 allows remote attackers t…
2017-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2015-1635CVE KEV
HTTP.sys in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8, Windows 8.1, and Wi…
2015-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2022-22954CVE KEV
VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability …
2022-01-01KEV
EPSS100.0%
pct 99
8.8
CVE-2012-0158CVE KEV
The (1) ListView, (2) ListView2, (3) TreeView, and (4) TreeView2 ActiveX controls in MSCOMCTL.O…
2012-01-01KEV
EPSS100.0%
pct 99
9.8
CVE-2023-22527CVE KEV
A template injection vulnerability on older versions of Confluence Data Center and Server allow…
2023-01-01KEV
EPSS100.0%
pct 99
7.8
CVE-2021-22204AST KEV
Improper neutralization of user data in the DjVu file format in ExifTool versions 7.44 and up a…
2021-01-01KEV
EPSS100.0%
pct 99
9.8
CVE-2025-3248ANC KEV
Langflow versions prior to 1.3.0 are susceptible to code injection in the /api/v1/validate/cod…
2025-01-01KEV
EPSS100.0%
pct 99
9.8
CVE-2022-22963CVE KEV
In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routi…
2022-01-01KEV
EPSS99.9%
pct 99
9.8
CVE-2022-42889ANC
Apache Commons Text performs variable interpolation, allowing properties to be dynamically eval…
2022-01-01Pre-auth
EPSS99.9%
pct 99
8.8
CVE-2025-49704MSR KEV
Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows…
2025-01-01MicrosoftKEV
EPSS99.9%
pct 99
9.8
CVE-2025-24893ANC KEV
XWiki Platform is a generic wiki platform offering runtime services for applications built on t…
2025-01-01KEV
EPSS99.9%
pct 99
9.8
CVE-2024-36401ANC KEV
GeoServer is an open source server that allows users to share and edit geospatial data. Prior t…
2024-01-01KEV
EPSS99.8%
pct 99
10.0
CVE-2025-32432ANC KEV
Craft is a flexible, user-friendly CMS for creating custom digital experiences on the web and b…
2025-01-01KEV
EPSS99.7%
pct 99
10.0
CVE-2021-22205ANC KEV
An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.9. GitLab …
2021-01-01KEV
EPSS99.7%
pct 99
9.8
CVE-2019-16759CVE KEV
vBulletin 5.x through 5.5.4 allows remote command execution via the widgetConfig[code] paramete…
2019-01-01KEV
EPSS99.7%
pct 99
8.1
CVE-2022-22965DEB KEV
A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code e…
2022-01-01KEV
EPSS99.7%
pct 99
9.8
CVE-2024-23692ANC KEV
Rejetto HTTP File Server, up to and including version 2.3m, is vulnerable to a template injecti…
2024-01-01KEV
EPSS99.5%
pct 99
7.5
CVE-2017-7494DEB KEV
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code exec…
2017-01-01KEV
EPSS99.4%
pct 99
9.8
CVE-2023-3519CVE KEV
Unauthenticated remote code execution
2023-01-01KEV
EPSS99.3%
pct 99
9.8
CVE-2014-6287CVE KEV
The findMacroMarker function in parserLib.pas in Rejetto HTTP File Server (aks HFS or HttpFileS…
2014-01-01KEV
EPSS99.3%
pct 99
8.8
CVE-2021-25646DEB
Apache Druid includes the ability to execute user-provided JavaScript code embedded in various …
2021-01-01
EPSS99.2%
pct 99
9.8
CVE-2021-44529CVE KEV
A code injection vulnerability in the Ivanti EPM Cloud Services Appliance (CSA) allows an unaut…
2021-01-01KEV
EPSS99.1%
pct 99
9.8
CVE-2018-7602DEB KEV
A remote code execution vulnerability exists within multiple subsystems of Drupal 7.x and 8.x. …
2018-01-01KEV
EPSS99.1%
pct 99
9.8
CVE-2022-3236CVE KEV
A code injection vulnerability in the User Portal and Webadmin allows a remote attacker to exec…
2022-01-01KEV
EPSS98.9%
pct 99
9.8
CVE-2008-4250CVE KEV
The Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vist…
2008-01-01KEV
EPSS98.8%
pct 99
10.0
CVE-2022-24816CVE KEV
JAI-EXT is an open-source project which aims to extend the Java Advanced Imaging (JAI) API. Pro…
2022-01-01KEV
EPSS98.7%
pct 99
8.5
CVE-2021-39144DEB KEV
XStream is a simple library to serialize objects to XML and back again. In affected versions th…
2021-01-01KEV
EPSS98.5%
pct 99
8.8
CVE-2019-1003000CVE
A sandbox bypass vulnerability exists in Script Security Plugin 1.49 and earlier in src/main/ja…
2019-01-01
EPSS98.4%
pct 99
9.3
CVE-2026-33017ANC KEV
Langflow is a tool for building and deploying AI-powered agents and workflows. In versions prio…
2026-01-01KEV
EPSS98.4%
pct 99
10.0
CVE-2022-22947CVE KEV
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a …
2022-01-01KEV
EPSS98.3%
pct 99
9.8
CVE-2023-6553CVE
The Backup Migration plugin for WordPress is vulnerable to Remote Code Execution in all version…
2023-01-01Pre-auth
EPSS97.8%
pct 99
9.4
CVE-2024-9264ANC
The SQL Expressions experimental feature of Grafana allows for the evaluation of `duckdb` queri…
2024-01-01
EPSS97.8%
pct 99
9.3
CVE-2024-56145ANC KEV
Craft is a flexible, user-friendly CMS for creating custom digital experiences on the web and b…
2024-01-01KEV
EPSS97.4%
pct 99
8.8
CVE-2019-9082CVE KEV
ThinkPHP before 3.2.4, as used in Open Source BMS v1.1.1 and other products, allows Remote Comm…
2019-01-01KEV
EPSS97.4%
pct 99
9.8
CVE-2023-0297DEB
Code Injection in GitHub repository pyload/pyload prior to 0.5.0b3.dev31.
2023-01-01Pre-auth
EPSS97.0%
pct 99
9.8
CVE-2023-33246CVE KEV
For RocketMQ versions 5.1.0 and below, under certain conditions, there is a risk of remote comm…
2023-01-01KEV
EPSS96.6%
pct 99
9.8
CVE-2018-1273CVE KEV
Spring Data Commons, versions prior to 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported ver…
2018-01-01KEV
EPSS95.6%
pct 99
9.8
CVE-2023-49070CVE
Pre-auth RCE in Apache Ofbiz 18.12.09. It's due to XML-RPC no longer maintained still present.…
2023-01-01Pre-auth
EPSS95.4%
pct 99
9.8
CVE-2009-1151DEB KEV
Static code injection vulnerability in setup.php in phpMyAdmin 2.11.x before 2.11.9.5 and 3.x b…
2009-01-01KEV
EPSS95.4%
pct 99
7.5
CVE-2019-7609DEB KEV
Kibana versions before 5.6.15 and 6.6.1 contain an arbitrary code execution flaw in the Timelio…
2019-01-01KEV
EPSS95.3%
pct 99
Select a vulnerability on the left to open the preview.