V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

74 / 74
CWE: CWE-436×Clear all
8.8
CVE-2021-28474MSR
Microsoft SharePoint Server Remote Code Execution Vulnerability
2021-01-01Microsoft
EPSS50.6%
pct 98
7.5
CVE-2019-17596DEB
Go before 1.12.11 and 1.3.x before 1.13.2 can panic upon an attempt to process network traffic …
2019-01-01Pre-auth
EPSS4.7%
pct 90
6.5
CVE-2019-5892DEB
bgpd in FRRouting FRR (aka Free Range Routing) 2.x and 3.x before 3.0.4, 4.x before 4.0.1, 5.x …
2019-01-01
EPSS2.7%
pct 84
7.5
CVE-2022-23773DEB
cmd/go in Go before 1.16.14 and 1.17.x before 1.17.7 can misinterpret branch names that falsely…
2022-01-01Pre-auth
EPSS2.7%
pct 83
9.1
CVE-2019-18792DEB
An issue was discovered in Suricata 5.0.0. It is possible to bypass/evade any tcp based signatu…
2019-01-01Pre-auth
EPSS2.5%
pct 82
9.8
CVE-2023-24813DEB
Dompdf is an HTML to PDF converter written in php. Due to the difference in the attribute parse…
2023-01-01Pre-auth
EPSS2.5%
pct 82
9.8
CVE-2021-45327DEB
Gitea before 1.11.2 is affected by Trusting HTTP Permission Methods on the Server Side when ref…
2021-01-01Pre-auth
EPSS2.1%
pct 78
9.8
CVE-2019-19589CVE
The Lever PDF Embedder plugin 4.4 for WordPress does not block the distribution of polyglot PDF…
2019-01-01Pre-auth
EPSS1.8%
pct 75
5.3
CVE-2024-2004ANC
When a protocol selection parameter option disables all protocols without adding any then the d…
2024-01-01
EPSS1.7%
pct 73
9.8
CVE-2020-10180CVE
The ESET AV parsing engine allows virus-detection bypass via a crafted BZ2 Checksum field in an…
2020-01-01Pre-auth
EPSS1.6%
pct 73
5.5
CVE-2020-9342CVE
The F-Secure AV parsing engine before 2020-02-05 allows virus-detection bypass via crafted Comp…
2020-01-01
EPSS1.6%
pct 72
7.5
CVE-2023-22602DEB
When using Apache Shiro before 1.11.0 together with Spring Boot 2.6+, a specially crafted HTTP …
2023-01-01Pre-auth
EPSS1.6%
pct 71
7.5
CVE-2021-39137DEB
go-ethereum is the official Go implementation of the Ethereum protocol. In affected versions a …
2021-01-01Pre-auth
EPSS1.5%
pct 71
7.8
CVE-2020-9362CVE
The Quick Heal AV parsing engine (November 2019) allows virus-detection bypass via a crafted GP…
2020-01-01
EPSS1.5%
pct 70
7.5
CVE-2020-10193CVE
ESET Archive Support Module before 1294 allows virus-detection bypass via crafted RAR Compressi…
2020-01-01Pre-auth
EPSS1.4%
pct 67
8.8
CVE-2023-39481CVE
Softing Secure Integration Server Interpretation Conflict Remote Code Execution Vulnerability. …
2023-01-01
EPSS1.3%
pct 65
6.5
CVE-2023-29406DEB
The HTTP/1 client does not fully validate the contents of the Host header. A maliciously crafte…
2023-01-01Pre-auth
EPSS1.2%
pct 65
7.5
CVE-2023-29197DEB
guzzlehttp/psr7 is a PSR-7 HTTP message library implementation in PHP. Affected versions are su…
2023-01-01Pre-auth
EPSS1.2%
pct 64
5.5
CVE-2020-9264CVE
ESET Archive Support Module before 1296 allows virus-detection bypass via a crafted Compression…
2020-01-01
EPSS1.2%
pct 63
7.5
CVE-2022-48279DEB
In ModSecurity before 2.9.6 and 3.x before 3.0.8, HTTP multipart requests were incorrectly pars…
2022-01-01Pre-auth
EPSS1.2%
pct 63
5.5
CVE-2020-9399CVE
The Avast AV parsing engine allows virus-detection bypass via a crafted ZIP archive. This affec…
2020-01-01
EPSS1.1%
pct 62
7.8
CVE-2020-9363CVE
The Sophos AV parsing engine before 2020-01-14 allows virus-detection bypass via a crafted ZIP …
2020-01-01
EPSS0.9%
pct 56
5.8
CVE-2026-32052CVE
OpenClaw versions prior to 2026.2.24 contain a command injection vulnerability in the system.ru…
2026-01-01
EPSS0.9%
pct 55
7.4
CVE-2024-28054DEB
Amavis before 2.12.3 and 2.13.x before 2.13.1, in part because of its use of MIME-tools, has an…
2024-01-01Pre-auth
EPSS0.8%
pct 52
5.3
CVE-2023-30541CVE
OpenZeppelin Contracts is a library for secure smart contract development. A function in the im…
2023-01-01Pre-auth
EPSS0.8%
pct 52
8.8
CVE-2022-36051CVE
ZITADEL combines the ease of Auth0 and the versatility of Keycloak.**Actions**, introduced in Z…
2022-01-01
EPSS0.8%
pct 50
6.5
CVE-2023-30536DEB
slim/psr7 is a PSR-7 implementation for use with Slim 4. In versions prior to 1.6.1 an attacker…
2023-01-01Pre-auth
EPSS0.7%
pct 49
8.6
CVE-2025-12816DEB
An interpretation-conflict (CWE-436) vulnerability in node-forge versions 1.3.1 and earlier ena…
2025-01-01Pre-auth
EPSS0.7%
pct 47
5.5
CVE-2024-38428ANC
url.c in GNU Wget through 1.24.5 mishandles semicolons in the userinfo subcomponent of a URI, a…
2024-01-01
EPSS0.7%
pct 47
6.5
CVE-2022-0011CVE
PAN-OS software provides options to exclude specific websites from URL category enforcement and…
2022-01-01
EPSS0.7%
pct 46
9.8
CVE-2024-24754CVE
Bref enable serverless PHP on AWS Lambda. When Bref is used with the Event-Driven Function runt…
2024-01-01Pre-auth
EPSS0.6%
pct 44
6.5
CVE-2022-29254CVE
silverstripe-omnipay is a SilverStripe integration with Omnipay PHP payments library. For a sub…
2022-01-01Pre-auth
EPSS0.6%
pct 44
7.3
CVE-2023-36456CVE
authentik is an open-source Identity Provider. Prior to versions 2023.4.3 and 2023.5.5, authent…
2023-01-01Pre-auth
EPSS0.6%
pct 42
7.5
CVE-2024-34478CVE
btcd before 0.24.0 does not correctly implement the consensus rules outlined in BIP 68 and BIP …
2024-01-01Pre-auth
EPSS0.6%
pct 41
7.5
CVE-2026-25223ANC
Fastify is a fast and low overhead web framework, for Node.js. Prior to version 5.7.2, a valida…
2026-01-01Pre-auth
EPSS0.5%
pct 39
4.6
CVE-2023-22735DEB
Zulip is an open-source team collaboration tool. In versions of zulip prior to commit `2f6c5a8`…
2023-01-01
EPSS0.5%
pct 39
9.1
CVE-2026-6270CVE
@fastify/middie versions 9.3.1 and earlier do not register inherited middleware directly on chi…
2026-01-01Pre-auth
EPSS0.5%
pct 38
4.3
CVE-2022-36048DEB
Zulip is an open-source team collaboration tool with topic-based threading that combines email …
2022-01-01
EPSS0.5%
pct 38
9.1
CVE-2026-33808CVE
Impact@fastify/express v4.0.4 and earlier fails to normalize URLs before passing them to Expres…
2026-01-01Pre-auth
EPSS0.5%
pct 37
5.3
CVE-2025-24013ANC
CodeIgniter is a PHP full-stack web framework. Prior to 4.5.8, CodeIgniter lacked proper header…
2025-01-01Pre-auth
EPSS0.5%
pct 37
Select a vulnerability on the left to open the preview.