Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 2 3 4 5 6 [7] 8 9 10 11 12 13 14 15 16 17 ...Result(s) : 129287

Alerts Feed Alerts

DateNameCategoriesDetail
42019-09-17CVE-2016-10977cve The nelio-ab-testing plugin before 4.5.0 for WordPress has filename=..%2f directory traversal.
4.32019-09-17CVE-2016-10976cve The safe-editor plugin before 1.2 for WordPress has no se_save authentication, with resultant XSS.
4.32019-09-17CVE-2016-10975cve The fluid-responsive-slideshow plugin before 2.2.7 for WordPress has reflected XSS via the skin parameter.
6.82019-09-17CVE-2016-10974cve The fluid-responsive-slideshow plugin before 2.2.7 for WordPress has frs_save CSRF with resultant stored XSS.
7.52019-09-17CVE-2019-16378cve OpenDMARC through 1.3.2 and 1.4.x through 1.4.0-Beta1 is prone to a signature-bypass vulnerability with multiple From: addresses, which might affect applications that consider a...
7.52019-09-17CVE-2019-16239cve process_http_response in OpenConnect before 8.05 has a Buffer Overflow when a malicious server uses HTTP chunked encoding with crafted chunk sizes.
7.52019-09-17CVE-2019-15131cve In Code42 Enterprise 6.7.5 and earlier, 6.8.4 through 6.8.8, and 7.0.0 a vulnerability has been identified that may allow arbitrary files to be uploaded to Code42 servers and ex...
4.32019-09-16CVE-2019-8368cve OpenEMR v5.0.1-6 allows XSS.
7.52019-09-16CVE-2019-5482cve Heap buffer overflow in the TFTP protocol handler in cURL 7.19.4 to 7.65.3.
7.52019-09-16CVE-2019-5481cve Double-free vulnerability in the FTP-kerberos code in cURL 7.52.0 to 7.65.3.
6.52019-09-16CVE-2019-4147cve IBM Sterling File Gateway 2.2.0.0 through 6.0.1.0 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker t...
5.82019-09-16CVE-2019-16371cve LogMeIn LastPass before 4.33.0 allows attackers to construct a crafted web site that captures the credentials for a victim's account on a previously visited web site, becau...
4.32019-09-16CVE-2019-16370cve The PGP signing plugin in Gradle before 6.0 relies on the SHA-1 algorithm, which might allow an attacker to replace an artifact with a different one that has the same SHA-1 mess...
7.52019-09-16CVE-2019-15741cve An issue was discovered in GitLab Omnibus 7.4 through 12.2.1. An unsafe interaction with logrotate could result in a privilege escalation
52019-09-16CVE-2019-15740cve An issue was discovered in GitLab Community and Enterprise Edition 7.9 through 12.2.1. EXIF Geolocation data was not being removed from certain image uploads.
4.32019-09-16CVE-2019-15739cve An issue was discovered in GitLab Community and Enterprise Edition 8.1 through 12.2.1. Certain areas displaying Markdown were not properly sanitizing some XSS payloads.
52019-09-16CVE-2019-15738cve An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.2.1. Under certain conditions, merge request IDs were being disclosed via email.
6.42019-09-16CVE-2019-15737cve An issue was discovered in GitLab Community and Enterprise Edition through 12.2.1. Certain account actions needed improved authentication and session management.
52019-09-16CVE-2019-15736cve An issue was discovered in GitLab Community and Enterprise Edition through 12.2.1. Under certain circumstances, CI pipelines could potentially be used in a denial of service att...
42019-09-16CVE-2019-15734cve An issue was discovered in GitLab Community and Enterprise Edition 8.6 through 12.2.1. Under very specific conditions, commit titles and team member comments could become viewab...
Page(s) : 1 2 3 4 5 6 [7] 8 9 10 11 12 13 14 15 16 17 ...Result(s) : 129287